Menu

NetworkMiner - How to extract email

Help
Sokoban3
2017-02-20
2017-02-20
  • Sokoban3

    Sokoban3 - 2017-02-20

    Hi
    Iam studying Nework Security
    I have NetworkMiner 1.0 and I want to know how I extract an email. I want to see my own email, the message and the password... is it possible?

    Please help me

    // Sokoban3

     
  • Erik Hjelmvik

    Erik Hjelmvik - 2017-02-20

    Hi Sokoban,

    Please use the latest version of NetworkMiner to extract emails from SMTP, POP3 and IMAP. However, we have stoped hosting new releases on SourceForge. Instead please visit this page to download the latest version (currently 2.1.1):
    https://www.netresec.com/?page=NetworkMiner

    You can also reach the NetworkMiner download page via this URL
    http://networkminer.com

    Best regards,
    Erik

     
  • Sokoban3

    Sokoban3 - 2017-02-20

    Ok , I have now downloaded the latest NetworkMiner, how will I do further to solve the problem ?

    // Sokoban3

     

    Last edit: Sokoban3 2017-02-20
  • Erik Hjelmvik

    Erik Hjelmvik - 2017-02-20

    If you are sending/receiving your email via unencrypted SMTP/POP3/IMAP, then yes. If you're using a webmail solution that doesn't use SSL, then maybe.

    To extract an email message, simply do:
    1. Start a packet capture of your network traffic (using for example tcpdump or Wireshark)
    2. Send or receive some emails
    3. Stop the packet capture and save it as a PCAP file (avoid the new PCAP-NG format, the old "libpcap" one is prefered)
    4. Open the PCAP file with NetworkMiner
    5. Open the Messages tab to see the extracted emails

     
    • Sokoban3

      Sokoban3 - 2017-02-20

      Hi Thanks for your answer,
      It does not work with Webmail with SSL ?

      I have got capture xxx.xxx.xxx,xxx port 443 without messages..

      any idea?

      // Sokoban3

       

      Last edit: Sokoban3 2017-02-20

Log in to post a comment.