[Bug 555655] New: Review Request: sslstrip - tool that provides a demonstration of HTTPS stripping attacks

bugzilla at redhat.com bugzilla at redhat.com
Fri Jan 15 05:20:27 UTC 2010


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.

Summary: Review Request: sslstrip - tool that provides a demonstration of HTTPS stripping attacks

https://bugzilla.redhat.com/show_bug.cgi?id=555655

           Summary: Review Request: sslstrip - tool that provides a
                    demonstration of HTTPS stripping attacks
           Product: Fedora
           Version: rawhide
          Platform: All
        OS/Version: Linux
            Status: NEW
          Severity: medium
          Priority: medium
         Component: Package Review
        AssignedTo: nobody at fedoraproject.org
        ReportedBy: maxamillion at fedoraproject.org
         QAContact: extras-qa at fedoraproject.org
                CC: notting at redhat.com, fedora-package-review at redhat.com
   Estimated Hours: 0.0
    Classification: Fedora


Spec URL: http://maxamillion.fedorapeople.org/sslstrip.spec
SRPM URL: http://maxamillion.fedorapeople.org/sslstrip-0.7-1.fc12.src.rpm

Description: 
Tool that provides a demonstration of HTTPS stripping attacks that were 
presented at Black Hat DC 2009 by Moxie Marlinspike. It will transparently 
hijack HTTP traffic on a network, watch for HTTPS links and redirects, then map 
those links into either look-alike HTTP links or homograph-similar HTTPS links.
It also supports modes for supplying a favicon which looks like a lock icon, 
selective logging, and session denial

-- 
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.



More information about the package-review mailing list