Using Wireshark to Find the HTTP Login Decode
In past articles I covered how to search for HTTP login credentials.
After my readers’ feedback, I wanted to cover another approach used to find login credentials.
Just want to start with a simple statement. These articles are used when troubleshooting, baselining or for protocol analysis practice. I always tell my clients that if you don’t like having your passwords in easily decoded or clear text format you can either change the application, or use other techniques to protect yourself like using a VPN.
The approach in this example is for those web applications that use a HTML form for login/authentication.