MITM Checker

Discussion in 'other anti-malware software' started by svenfaw, May 21, 2019.

  1. svenfaw

    svenfaw Registered Member

    Joined:
    May 7, 2012
    Posts:
    291
    Version 0.41b is now available.

    Main changes:

    - fewer handshake failures
    - better performance
    - larger host list
    - added: copy results to clipboard
     
  2. XIII

    XIII Registered Member

    Joined:
    Jan 12, 2009
    Posts:
    1,383
    Still 2 handshake errors (but now for wp.com and trustprobe.com)

    New: 1 alert (which is a false alarm: my ad-blocker uses its own certificate for www.doubleclick.net)

    EDIT: Oh, trustprobe.com is the host of this tool; and that domain is blocked by my firewall... ("malicious neighbors")
     
  3. Sampei Nihira

    Sampei Nihira Registered Member

    Joined:
    Apr 7, 2013
    Posts:
    3,343
    Location:
    Italy
    The new version is not compatible with Windows XP.
     
  4. Sampei Nihira

    Sampei Nihira Registered Member

    Joined:
    Apr 7, 2013
    Posts:
    3,343
    Location:
    Italy
    Problems with Vista 32 bit.
    The app's bugged GUI.
    Very elongated window, with no-way to resize, minimize and/or maximize.
     
  5. Surt

    Surt Registered Member

    Joined:
    Jan 23, 2019
    Posts:
    471
    Location:
    USA
    Version 0.41b - Thanks!

    FYI: Copy does not work. I get a "ding" and no clipboard for to paste.

    To-do List requests:
    - Allow to select from user-named txt lists from the GUI.
    - Tone back a few shades on the red. :)

    Got two alerts for Amazon and PayPal. Note different result for the latter when the www was dropped.

    MITMcheckerAlerts.jpg
     
  6. svenfaw

    svenfaw Registered Member

    Joined:
    May 7, 2012
    Posts:
    291
    Thanks for all the feedback. V0.45b has been released, fixing a few bugs and false positives.
    GUI improvements are a little further on the roadmap.
     
  7. Surt

    Surt Registered Member

    Joined:
    Jan 23, 2019
    Posts:
    471
    Location:
    USA
    Sorry!
    I was right-clicking on the empty space in my two-host host list and selecting copy. Highlighting a host or multi-selecting with ctrl or shift works OK.

    To-do List = further on the roadmap :thumb:
     
  8. svenfaw

    svenfaw Registered Member

    Joined:
    May 7, 2012
    Posts:
    291
    v0.49b is out, with a simplified GUI and increased timeout values. (Further GUI changes are planned)
     
  9. Sampei Nihira

    Sampei Nihira Registered Member

    Joined:
    Apr 7, 2013
    Posts:
    3,343
    Location:
    Italy
    I have the impression of wasting time in this 3D.
    Good job.
     
  10. svenfaw

    svenfaw Registered Member

    Joined:
    May 7, 2012
    Posts:
    291
    Version 0.61b is now available.

    Changes:
    - significant speed boost (a scan should typically complete in under 15-20 seconds)
    - more reliable connections
    - added HSTS check
    - added check for weak intermediate or leaf signatures (also a sign of high MITM risk)

    Advanced user warning:
    Sorry, I've got very little spare time to spend on the forum these days. Also note that the tool comes with no documentation.
    Therefore some knowledge of security concepts such as HSTS, certificate signatures, and MITM attack scenarios is required.
     
    Last edited: Jun 13, 2019
  11. askmark

    askmark Registered Member

    Joined:
    Jul 7, 2016
    Posts:
    392
    Location:
    united kingdom
    Thank you.
     
  12. svenfaw

    svenfaw Registered Member

    Joined:
    May 7, 2012
    Posts:
    291
    v0.68b is available:

    - more UI, performance and reliability improvements
    - host list expanded to 300 high traffic domains
    - product has been renamed to NoSnoop
     
  13. svenfaw

    svenfaw Registered Member

    Joined:
    May 7, 2012
    Posts:
    291
    v0.69 is available.

    - Speed and reliability improvements: a standard (250-host) scan will now typically take less than 15 seconds.
     
  14. askmark

    askmark Registered Member

    Joined:
    Jul 7, 2016
    Posts:
    392
    Location:
    united kingdom
    Sorry, can't see it on your download page :(
     
  15. guest

    guest Guest

    It has been renamed to "NoSnoop"
     
  16. askmark

    askmark Registered Member

    Joined:
    Jul 7, 2016
    Posts:
    392
    Location:
    united kingdom
    You have eyes like a hawk! Thank you :)
     
  17. guest

    guest Guest

    :)
    You're most welcome.
     
  18. HempOil

    HempOil Registered Member

    Joined:
    Jun 15, 2015
    Posts:
    224
    Location:
    Canada
    I seem to be getting a 0K zip file when I try to download this.
     
  19. askmark

    askmark Registered Member

    Joined:
    Jul 7, 2016
    Posts:
    392
    Location:
    united kingdom
    It's not just you, it's everyone.
     
  20. HempOil

    HempOil Registered Member

    Joined:
    Jun 15, 2015
    Posts:
    224
    Location:
    Canada
    Oh, OK. Thanks for confirming it.
     
  21. askmark

    askmark Registered Member

    Joined:
    Jul 7, 2016
    Posts:
    392
    Location:
    united kingdom
    Your'e welcome. I did actually download this back in July, and used it successfully, but when i tried to run it today, nothing happened... literally nothing, no window, no message or anything. I decided to change the date of my comp to July 8th (the date it as was released) when I ran it again it worked.

    I guess the author has deliberately broken the downloads on his site because the current version of the program is time limited and has expired.
     
  22. Surt

    Surt Registered Member

    Joined:
    Jan 23, 2019
    Posts:
    471
    Location:
    USA
    Same here.
     
  23. HempOil

    HempOil Registered Member

    Joined:
    Jun 15, 2015
    Posts:
    224
    Location:
    Canada
    Clever work-around!
     
  24. askmark

    askmark Registered Member

    Joined:
    Jul 7, 2016
    Posts:
    392
    Location:
    united kingdom
    Thank you :)
     
  25. lucd

    lucd Registered Member

    Joined:
    Jan 30, 2018
    Posts:
    782
    Location:
    Island of Woman
    where is the link, all I can see is:
    DNSGlass
    NoSnoop
    BrowseByExt
    EOPRadar
    µNote
    ElevateAs
    Cobbler
    PocketHash
    RCC
    REM
    ClipTTL
    Shane
    DistantKeys
    MiniWaller
    RawOSD
    CTLInfo
    MZreveal
    PEstamp
    Nugget
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.