[hobbit] Feature request: SSL/TLS client/server negotiation

Charles Jones jonescr at cisco.com
Sat Oct 14 01:41:44 CEST 2006


It should be fairly easy to mod the hobbit code so that it does a really 
simple scramble (XOR) of the data stream. If you do that, plus running 
it on a non-standard port, should sufficiently confuse most people 
running a sniffer. At least the data wouldn't be in plaintext and the 
attacker would have to code up a custom app to decode the data. If they 
have time to do that, they are probably good enough to own your network 
anyway.



More information about the Xymon mailing list