Chapcrack is a tool for parsing MS-CHAPv2 handshakes, which can then be submitted to CloudCracker for cracking.
ff9720e841128269952f9459353d4052432bb7c937b940b8ed65d9d9451495f5
This tool was originally written to demonstrate and exploit IE's vulnerability to a specific "basicConstraints" man-in-the-middle attack. While Microsoft has since fixed the vulnerability that allowed leaf certificates to act as signing certificates, this tool is still occasionally useful for other purposes. It is designed to MITM all SSL connections on a LAN and dynamically generates certs for the domains that are being accessed on the fly. The new certificates are constructed in a certificate chain that is signed by any certificate that you provide.
50b4283a3e80fa4b4f3f684c4e76348aba8e257cbaa85e4f4cb7a4062cf091d5
The way that FireGPG handles the user's passphrase and decrypted clear-text is not secure and may result in the compromise of secure communication or a user's private key. All versions up to 0.6 are vulnerable.
239f3dce0b1ce7a509db57be9343323b2b6bb6e3a2481b6c02bd2fa7453507c2