discovered 03 Aug 2026
ssh-mitm
→ View on GitHubSSH MITM is a penetration testing tool that enables security auditors to intercept and log SSH connections by modifying OpenSSH to function as a proxy. It captures plaintext passwords and session data while exploiting common user complacency regarding SSH key changes. Notable features include Docker support for easy deployment, full SFTP capabilities, and a specialized script for identifying potential SSH targets on a LAN through ARP spoofing.