Release Notes: The hosts scan can now be canceled by the user, and the netmask can be specified within the GUI. The checksum_check option was renamed to checksum_warning, and a new option to prevent the check was introduced. The dns_spoof plugin was greatly enhanced, and a new plugin was introduced. Many bugfixes were made, especially for the Windows port.
Release Notes: An option to issue commands to the GUI (useful in scripts) and an option to show the list of NICs were added. The program compiles fine under Windows (mingw). A new plugin was developed and some minor bugs were fixed.
Release Notes: A WEP decryption algorithm for WiFi packets and support for prism2 headers were added. Filters can now be applied on a pcap file. The "should be" checksum is now displaying the correct value. A problem with the non-blocking SSL sockest was fixed, and a lot of other bugs causing segfaults in particular situations were fixed too.
Release Notes: Now the connections are buffered, so you can view past event data. A new sniffing method (port stealing) was added as a plugin. The SMB dissector and troll plugin were enhanced. Three new plugins, confusion, hunter, and SMB suite, have been added. The demonization problem and the StateMachine timeout session handling problem were fixed.
Release Notes: Experimental GTK+ 2.0 interface support has been added. A new, enhanced poisoning method (against Solaris) has been introduced and many new plugins for PPTP tunnel breaking have been added. There is a new utility for conversion from L0phtcrack format 2.5 to 4.0. A LIBS problem under Mac OS X (-lpoll) and many other bugs have been fixed.
Release Notes: In this release, Solaris porting and Sparc support are now in beta stage (usable, but still unstable). The ability to bind a port on which ettercap forwards the sniffed trafic was added and the -H option now supports range ip. There is a new plugin for becoming root of a switches spanning tree. The passive fingerprint database was updated. A problem with pthread_join under MacOSX, the -w option, and the conflicting options -Y and -a were fixed. The FindIface function under BSD was enhanced.
Release Notes: This version has been ported to Mac OS X (Darwin 1.3.x). A reverse IP matching option (-R) was added. The source IP can now be spoofed on start up. The delay between ARP requests can now be customized on startup. The OS fingerprint database was updated. The IRC dissector and triton plugin were enhanced. The arpcop, phantom, and imp plugins were added. Fixes were made for the "make_label" compilation problem, a segfault on OS fingerprinting, the ip_forwarding restoration bug, and some ncurses visualization errors.
Release Notes: A Protocol State Machine for dissectors, ability to specify the rule "Log" to the filtering form, a Packet Factory (create and send packets on the fly), support to handle multiple configuration files, code cleanups, ability to launch plugins from connection list, a new plugin (banshee), and enhancements in the protocol dissector for SOCKS 5, IMAP, VNC, SMB, and MySQL.
Release Notes: This release adds a FreeBSD 4.2 port. There is no more two hosts limit in sniffing mode. A silent mode (no arp storm on start up) has been added. Plugin version control is now available. A -x option for hex mode in the commandline and better getopt parsing have been added.
Release Notes: Plugin output is now scrollable, detailed packets view is available in hex mode (SEQ, ACK, and FLAGS), identification of the connection type (ftp, telnet, ecc) is available, it's now possible to kill a connection from the connection list, and a segfault that occured when you pressed enter and no plugin was found has been removed.