Full Disclosure mailing list archives

Re: Sniffing ICQ traffic


From: Darren Bennett <DARREN.L.BENNETT () saic com>
Date: Mon, 10 Nov 2003 09:47:20 -0800

I believe that AIMsniff will do this as well. 

http://freshmeat.net/projects/aimsniff/?topic_id=26%2C43%2C152

It's excellent for IM sniffing.

        -DB

On Mon, 2003-11-10 at 09:10, Jeremiah Cornelius wrote:
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Monday 10 November 2003 08:55, ttsoares () orion ufrgs br wrote:

<SNIP>
By the way... do you know a good text or some examples about how do write
filters to ethereal?  The syntax, variables, etc...

The filters are constructed just like tcpdump filters.  All of this is because 
of the libpcap format.

It is pretty hard to beat the UNIX man page that comes with Etheral, if you 
want a concise reference.

    man ethereal-filter

Windows users can find this if they get the source package, or online:

    http://www.ethereal.com/ethereal-filter.4.html

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (GNU/Linux)

iD8DBQE/r8Z/Ji2cv3XsiSARAqEBAJ0VRiSe9dcjdfqGUt4JiE5jAh7mOACdGp5Y
cuR22Cuh3yTlDQE/daNoIuY=
=loVs
-----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html
-- 
-----------------------------------------------
Darren Bennett - CISSP
Sr. Systems Administrator/Manager
Science Applications International Corporation
Advanced Systems Development and Integration
-----------------------------------------------

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: