
With pleasure we announce that Xplico is officially included in BackTrack repository.
Thanks to everyone and in particular to the team of BackTrack.
Comments Off
|
Feb
21
2010
Xplico version 0.5.5: WebMailPosted by: Gianluca C. in Binary, Dissectors, Improvements, News, Release, VisualizationIn this version:
Hotmail (Live) depends on the language. Currently the languages supported are Italian and English. You can download VirtualBox image, source code and Ubuntu 9.10 package here.
Currently there are at least 2 Forensic challenges in which Xplico can be used and can facilitate the analysis. These two challenges are: We do not answer the questions, here we will give some indication of use of Xplico. The “Ann’s AppleTV” pcap file has no particular problems of decoding, in fact if you process the pcap you obtain the data represented in the two pictures below. For the “Forensic Challenge 2010 – pcap attack trace” pcap decoding requires more attention. In fact this pcap file has corrupted packet (and not retransmitted), so you must disable the Xplico checksum verification (HowTo). From cli the command is:
Since Xplico is able to recognize the protocols (not all) even if they use non-standard ports is easy to see what protocol was used and which data file was downloaded. Enjoy
Dec
27
2009
Xplico version 0.5.4: Facebook ChatPosted by: Gianluca C. in Binary, Dissectors, Improvements, News, Release, VisualizationThis version of Xplico introduce new and important features:
You can download source code, Ubuntu 9.10 package and VirtualBox.org image here.
Nov
15
2009
Xplico version 0.5.3 and DEFT Vx5Posted by: Gianluca C. in Binary, DEFT, Dissectors, Improvements, News, Release, VisualizationYou can find this release in DEFT Vx5 Linux distribution. This version of Xplico introduce many new features:
We have to thank:
Enjoy
At SourceForge there is a VirtualBox.org image of Debian 5.0 with Xplico 0.5.2 installed and running. It is a smart way for testing this software without altering your environment. It is just download and begin to test Xplico. You can use Xplico to decode traffic in console or via web, uploading your own traffic pcap files. Click here to download it. Thanks to Carlos Gacimartín.
Forum: http://forum.xplico.org. Enjoy.
For some time we have in mind to make available a Wiki that contains the documentation of Xplico. Soon the new Wiki will be available, even if initially it will not have much contents. Merit and initiative of Carlos Gacimartín also a Forum will be opened. Thanks to Carlos, who has offered to maintain and administer the Forum, the Forum will allow participants to share: suggestions, use and problems concerning Xplico.
Bricowifi has created two video tutorials. One of them explains how to perform a live capture (and decoding) of wep traffic. Many thanks to Bricowifi.
It is available for download the binary package of Xplico 0.5.2 for Ubuntu 9.04.
For optimal viewing of web pages reconstructed by Xplico (using only the data in pcap files, and NOT go to the Internet) set the proxy in Firefox at localhost with port 9876. Thanks to * for his help. And now… enjoy.
|