Safari Books Online is a digital library providing on-demand subscription access to thousands of learning resources.
SSLStrip and Paros can be very useful tools to intercept data in applications using encryption, and even more in applications that don’t use it or can be easily attacked to strip it off. In the event of a successful phishing attack on a large number of users, many App Store applications, and especially web applications, send traffic unencrypted, which can easily be intercepted by either tool.
Depending on the target, an attacker can eavesdrop on correspondence over social networks and even capture private conversations. Example 9-6 shows a message and response intercepted when the target uses the AIM application.