ettercap
« Back to VersTracker
Description:
Multipurpose sniffer/interceptor/logger for switched LAN
Type: Formula  |  Latest Version: 0.8.3.1@2  |  Tracked Since: Dec 17, 2025
Links: Homepage  |  formulae.brew.sh
Category: Security
Tags: sniffer mitm networking security penetration-testing
Install: brew install ettercap
About:
Ettercap is a comprehensive suite for man-in-the-middle attacks on LAN networks. It supports active and passive dissection of protocols, traffic filtering, and logging. Its primary value is enabling security professionals to analyze network security vulnerabilities and test network protocols.
Key Features:
  • Live protocol sniffing and content inspection
  • Active and passive ARP poisoning
  • Flexible traffic filtering and injection
  • Support for a wide range of protocols
Use Cases:
  • Network security auditing and penetration testing
  • Analyzing unencrypted network traffic for vulnerabilities
  • Debugging network protocol implementations
Alternatives:
  • Wireshark – Wireshark is primarily a passive network protocol analyzer, whereas Ettercap specializes in active man-in-the-middle attacks and session manipulation.
  • Bettercap – Bettercap is a modern, modular framework that offers similar MITM capabilities but with a focus on modern network protocols and a more extensible architecture.
License: GPL-2.0-or-later
Dependencies: gdk-pixbuf, glib, gtk+3, libmaxminddb, libnet, ncurses, openssl@3, pcre2
Bottles available for: arm64_tahoe, arm64_sequoia, arm64_sonoma, sonoma, arm64_linux, x86_64_linux
Version History
Detected Version Rev Change Commit
Oct 29, 2025 8:06am 2 VERSION_BUMP 6f4ee972
Oct 15, 2025 5:02pm 2 VERSION_BUMP b2299433
Sep 15, 2025 5:46pm 2 VERSION_BUMP 2984a3f2
Sep 15, 2025 12:28am 2 VERSION_BUMP 2ba06cb2
Sep 13, 2024 11:13am 2 VERSION_BUMP 6bd958c1