IDS mailing list archives

Decrypting PPTP network traffic


From: Alexander Perchov <alexperchov1969 () googlemail com>
Date: Wed, 17 Mar 2010 10:46:02 +0100

Note: apologies for cross posting - I hope to get more coverage this
way, because google hasn't been helping lately ;-)

I am looking for a tool that can decrypt MPPE (Microsoft
Point-to-Point Encryption) network traffic given a pcap (or any other
format really) and the correct key / NTLM hash. Is anyone aware of
such a tool - public or even private software?

Most tools (and there isn't an awful lot of them anyway!) focus on
breaking MS-CHAP(v1|v2). This seems to be an area where some
significant papers were published back in the days, but very few tools
were actually implemented and published openly!

Kind Regards,

Your friendly frustrated Alexander

-----------------------------------------------------------------
Securing Your Online Data Transfer with SSL.
A guide to understanding SSL certificates, how they operate and their application. By making use of an SSL certificate 
on your web server, you can securely collect sensitive information online, and increase business by giving your 
customers confidence that their transactions are safe.
http://www.dinclinx.com/Redirect.aspx?36;5001;25;1371;0;1;946;9a80e04e1a17f194



Current thread: