Cookies help us display personalized product recommendations and ensure you have great shopping experience.

By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
SmartData CollectiveSmartData Collective
  • Analytics
    AnalyticsShow More
    big data analytics in transporation
    Turning Data Into Decisions: How Analytics Improves Transportation Strategy
    3 Min Read
    sales and data analytics
    How Data Analytics Improves Lead Management and Sales Results
    9 Min Read
    data analytics and truck accident claims
    How Data Analytics Reduces Truck Accidents and Speeds Up Claims
    7 Min Read
    predictive analytics for interior designers
    Interior Designers Boost Profits with Predictive Analytics
    8 Min Read
    image fx (67)
    Improving LinkedIn Ad Strategies with Data Analytics
    9 Min Read
  • Big Data
  • BI
  • Exclusive
  • IT
  • Marketing
  • Software
Search
© 2008-25 SmartData Collective. All Rights Reserved.
Reading: How Hackers Use SSL Strip to Obtain Secure Passwords [VIDEO]
Share
Notification
Font ResizerAa
SmartData CollectiveSmartData Collective
Font ResizerAa
Search
  • About
  • Help
  • Privacy
Follow US
© 2008-23 SmartData Collective. All Rights Reserved.
SmartData Collective > IT > Security > How Hackers Use SSL Strip to Obtain Secure Passwords [VIDEO]
Security

How Hackers Use SSL Strip to Obtain Secure Passwords [VIDEO]

Christian Crank
Christian Crank
3 Min Read
SHARE

Passwords are generally considered the first line of defense between cyber criminals and your data. In order to help prevent security breaches via logins, it’s crucial to pick strong passwords that are different for each of your important accounts, and it is good practice to update your passwords regularly. Despite these recommendations, people still employ weak passwords like “123456” and “password” – and then wonder why their data is stolen.

Passwords are generally considered the first line of defense between cyber criminals and your data. In order to help prevent security breaches via logins, it’s crucial to pick strong passwords that are different for each of your important accounts, and it is good practice to update your passwords regularly. Despite these recommendations, people still employ weak passwords like “123456” and “password” – and then wonder why their data is stolen.

As I’ve discussed here before, there are a number of ways hackers crack passwords. What I’ve also emphasized is that knowing the techniques hackers use is THE best way to combat them. In this short video, I will demonstrate how to use SSL Strip to obtain secure passwords. In addition to showing you how hackers carry out this attack, this video will guide you through the process so it can be applied to your company’s system to see if it’s accessible through weak passwords.

SSL Strip is a tool that essentially reroutes encrypted HTTPS requests from network users to plaintext HTTP requests, effectively checking out all logins traveling along the network via SSL. Basically, it lets users connect via HTTP, logs their information, then redirects their connection to the originally-intended HTTPS server on the Internet.

More Read

Image
eBay’s Data Breach Exposes 145 Million User Records
Cyber Summit 2012: Big Data, Small Presentations and Rock and Roll
Database Activity Monitoring – A Security Investment That Pays Off
Common Cyber Attacks And How To Protect Yourself From Them
Why You Must Leverage Encryption for Data Protection in the Digital Transformation Era

Watch and learn how SSL Strip allows users to detect wimpy passwords on the network.

As you saw, using SSL Strip to lift passwords is fairly straight forward. All organizations are susceptible to this type of attack. Those companies with strong password policies are less at risk.

It’s important to make sure your Web security is up-to-date. Remember, SSL Strip looks for HTTPS traffic and then redirects it to HTTP traffic, this is what makes it vulnerable. If the website is all HTTPS and not HTTP, SSL Strip cannot change the HTTPS link to a HTTP link. On a site note, if you find yourself needing to use a public network, or if your personal WIFI is not secured, then it’s probably not a good idea to use that network to access any of your personal accounts, lest you become a target for an SSL Strip attack.

Share This Article
Facebook Pinterest LinkedIn
Share

Follow us on Facebook

Latest News

ai for building crypto banks
Building Your Own Crypto Bank with AI
Blockchain Exclusive
julia taubitz vn5s g5spky unsplash
Benefits of AI in Nursing Education Amid Medicaid Cuts
Artificial Intelligence Exclusive News
AI role in medical industry
The Role Of AI In Transforming Medical Manufacturing
Artificial Intelligence Exclusive
b2b sales
Unseen Barriers: Identifying Bottlenecks In B2B Sales
Business Rules Exclusive Infographic

Stay Connected

1.2kFollowersLike
33.7kFollowersFollow
222FollowersPin

You Might also Like

Email Data
Data ManagementPrivacySecurity

How to Protect Your Organization’s Sensitive Email Data

7 Min Read

Keeping Focus on Mission IT at ODNI CIO

5 Min Read

Hardware Really Matters for Computer Functionality and Security

2 Min Read

Three Primary Analytics Lessons Learned from 9/11

5 Min Read

SmartData Collective is one of the largest & trusted community covering technical content about Big Data, BI, Cloud, Analytics, Artificial Intelligence, IoT & more.

ai in ecommerce
Artificial Intelligence for eCommerce: A Closer Look
Artificial Intelligence
data-driven web design
5 Great Tips for Using Data Analytics for Website UX
Big Data

Quick Link

  • About
  • Contact
  • Privacy
Follow US
© 2008-25 SmartData Collective. All Rights Reserved.
Go to mobile version
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?