Free Trial

Safari Books Online is a digital library providing on-demand subscription access to thousands of learning resources.


  • Create BookmarkCreate Bookmark
  • Create Note or TagCreate Note or Tag
  • PrintPrint
Share this Page URL
Help

9.6. Analyzing Data

SSLStrip and Paros can be very useful tools to intercept data in applications using encryption, and even more in applications that don’t use it or can be easily attacked to strip it off. In the event of a successful phishing attack on a large number of users, many App Store applications, and especially web applications, send traffic unencrypted, which can easily be intercepted by either tool.

Depending on the target, an attacker can eavesdrop on correspondence over social networks and even capture private conversations. Example 9-6 shows a message and response intercepted when the target uses the AIM application.


  

You are currently reading a PREVIEW of this book.

                                                                                        

Get instant access to over
$1 million worth of books and videos.

  

Start a Free Trial