Breaking Sec

Full Version: Sniffing passwords on the LAN with Cain
You're currently viewing a stripped down version of our content. View the full version with proper formatting.
Download Cain Here: http://oxid.it
1. Run Cain as administrator
2. Go to the tab that says sniffer
3. Go to the upper right corner under the Cain picture and enable the sniffer(click the button that looks like a computer chip)
4. Select your adapter (usually the one that has a listed IP address
5. Click of the blue Plus sign
6. Leave everything at the defaults and press OK
7. Right click-> Resolve the host name each of IP addresses that come up
8. Go to the bottom of the screen and hit the APR tab
9. Click on the top box
10. Click the blue plus sign
11. Choose the computer you want get passwords from in the left hand box
12. Highlight everything that comes up in the right hand box
13. Go to the upper right hand corner, by the sniffer button and APR button(the yellow circle)
14. To Find passwords, go to the bottom of the screen where it says passwords
15. Here you will find all usernames and passwords of the person you have poisoned (Most of the passwords will be in HTTP)
Note: Don’t bother with the ones that are random letters and numbers. You may end up DOSing yourself considering all of that person’s internet traffic will be going through your computer.
nice, perfect GUI for networking hacking, http packet sniffing and stuff like that.
Indeed. I'm just working on how to strip out ssl from webpages. Any ideas?
ankaku : ettercap.

everyone else:

Wireshark and tshark and ngrep and a basic knowledge of how networking works is > cain and able

that being said cain and able is like the best windows hacking tool ever...if you have to use windows and you dont need to snif wireless.
Reference URL's