Download List

Project Description

Ettercap is a network sniffer/interceptor/logger for ethernet LANs. It supports active and passive dissection of many protocols (even ciphered ones, like SSH and HTTPS). Data injection in an established connection and filtering on the fly is also possible, keeping the connection synchronized. Many sniffing modes were implemented to give you a powerful and complete sniffing suite. Plugins are supported. It has the ability to check whether you are in a switched LAN or not, and to use OS fingerprints (active or passive) to let you know the geometry of the LAN.

System Requirements

System requirement is not defined
Information regarding Project Releases and Project Resources. Note that the information here is a quote from Freecode.com page, and the downloads themselves may not be hosted on OSDN.

2003-09-08 13:56
0.6.3

Grell dissector (HTTPS) now handles proxy auth and TLS. The connection status handling was improved. The passive OS fingerprint database was updated. A bug where every packet sniffed from the net would be sent out to it has been fixed (introduced in 0.6.2). The ENOBUFS error on BSD, a bug in compilation with --disable-plugins, a bug in compilation on Mac OS X without dlcompat libs, the command line format bug exploit, and other security threats in the code have also been fixed.
Tags: First Generation, Major bugfixes

2003-09-08 13:53
0.6.3.1

This release fixes a compilation problem under Mac OS X and a string truncation in some protocol dissectors.
Tags: First Generation, Minor bugfixes

2003-09-08 13:53
0.6.4

Ability to sniff remote traffic through a GRE tunnel to a Cisco router and make a man-in-the-middle attack on it, some bits for the passive OS fingerprint database, support in the sniffing interface for JOINED view, two new plugins (thief dumps all files from HTTP and zaratan redirect GRE tunnels), updates to the passive OS fingerprint database, ignoring the pflog interface under OpenBSD, many bugfixes in the plugins (expecially under Mac OS X), and patching the possibility of remote exploitation on interface with MTU > 1500.
Tags: First Generation, Major feature enhancements

2003-07-10 23:15
0.6.b

Plugins now work with the GTK+ interface. The passive OS fingerprint database was updated (1200+ entries). A lot of bugs were fixed in order to have a stable release while development is focused on ettercap NG (0.7.0). The list of fixes includes: internal refreshing (for huge traffic loads), the wifi-dump support, doppleganger re-arp on shutdown, a problem with signed char under Mac G3, and some possible buffer overflows in the ncurses interface.
Tags: First Generation, Minor bugfixes

2003-05-06 22:40
0.6.a

Now the connections are buffered, so you can view past event data. A new sniffing method (port stealing) was added as a plugin. The SMB dissector and troll plugin were enhanced. Three new plugins, confusion, hunter, and SMB suite, have been added. The demonization problem and the StateMachine timeout session handling problem were fixed.
Tags: First Generation, Minor feature enhancements

Project Resources