Penetration Testing mailing list archives

Re: [PEN-TEST] Web Application Testing Tools


From: Eric Lauzon <elauzon () ITEMUS COM>
Date: Fri, 13 Oct 2000 12:37:01 -0400

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

The tool is good for intercepting normal http..i mean the concept is
there but when u use your software over an ssl connection
the certificate you issue is kinda dumb..anybody who get the
untrusted certificate pop-up window should be allerted that somthing
is
wrong when it before it was working fine...i may understand that is
must be a Proof Of Concept code but still the certificated issued by
the MITM proxy should be tunned.

Eric Lauzon
Itemus Solution


                                           DigiZen Security Group
                                         www.digizen-security.com
                                              Initial Tool Release

Name: Achilles v0.16.b
Release Date: 10/13/2000
Application: Web Application Security Testing
Platform: Windows

-----BEGIN PGP SIGNATURE-----
Version: PGP 7.0

iQA/AwUBOec42qIpv/xAG6RUEQIvsACgszeyyEr71AEN0pg9pGJFmmVvWycAnR4l
CpdMMOFlGhEonVLblvJpHpMm
=/P/W
-----END PGP SIGNATURE-----


Current thread: