Download List

Project Description

Ettercap is a network sniffer/interceptor/logger for ethernet LANs. It supports active and passive dissection of many protocols (even ciphered ones, like SSH and HTTPS). Data injection in an established connection and filtering on the fly is also possible, keeping the connection synchronized. Many sniffing modes were implemented to give you a powerful and complete sniffing suite. Plugins are supported. It has the ability to check whether you are in a switched LAN or not, and to use OS fingerprints (active or passive) to let you know the geometry of the LAN.

System Requirements

System requirement is not defined
Information regarding Project Releases and Project Resources. Note that the information here is a quote from Freecode.com page, and the downloads themselves may not be hosted on OSDN.

2003-01-28 04:11
0.6.9

Experimental GTK+ 2.0 interface support has been added. A new,
enhanced poisoning method (against Solaris) has been introduced and
many new plugins for PPTP tunnel breaking have been added. There is a
new utility for conversion from L0phtcrack format 2.5 to 4.0. A LIBS
problem under Mac OS X (-lpoll) and many other bugs have been fixed.
Tags: First Generation, Minor feature enhancements

2002-07-02 23:02
0.6.7

A bug preventing rlogin and telnet dissector from working correctly has been fixed. The exit_func function under MacOsX has also been fixed.
Tags: First Generation, Minor bugfixes

2002-06-03 14:06
0.6.6.6

In this release, Solaris porting and Sparc support are now in beta stage (usable, but still unstable). The ability to bind a port on which ettercap forwards the sniffed trafic was added and the -H option now supports range ip. There is a new plugin for becoming root of a switches spanning tree. The passive fingerprint database was updated. A problem with pthread_join under MacOSX, the -w option, and the conflicting options -Y and -a were fixed. The FindIface function under BSD was enhanced.
Tags: First Generation, Minor feature enhancements

2002-04-23 13:01
0.6.5

Ettercap now runs on Windows NT/2000/XP. The ability to dump to and sniffing from tcpdump file format was added, and the logging engine now does not log the same info twice. Under *BSD and Mac OS X it now uses only one BPF at a time. An option to allow multi-target ARP sniffing has been added, along with a new plugin (roper), and new dissectors for QUAKE 3, ICQ v7, MSN, and YMSG. The documentation was translated to Polish and Dutch. Many bugfixes including better handling of CTRL+C, the dlsym problem on OpenBSD 3.0, and the "not scrolling" JOINED visualization.
Tags: First Generation, Major feature enhancements

2001-09-17 20:09
0.6.0

Passive scanning of the LAN has been implemented. It is now possible to
retrieve data about hosts in a LAN, including open ports, services versions,
type of the host (gateway, router, or simple host), and the estimated distance
in hops. The plugins were ported to Mac OS X (Darwin). The ARP poisoner now
uses the new REQUEST ARP POISON technique. HTTPS mitm now supports virtual
hosts. The Logging engine for the simple mode was rewritten from scratch. Two
new plugins were added: beholder and basilisk. Imp and triton were enhanced.
The configure script was tuned up. Many bugs which were introduced with the
0.5.4 version were fixed.
Tags: First Generation, Major feature enhancements

Project Resources