... I think all the goods had been got long before that
( SSL2 was of no hope... ) Cain laid waste to SSL/SSL2 in a "live test" to a "non beliver" in Cains ability to wreak havok in a switched environment, thus transforming the non-beliver into a puddle of goo... I was quite supprised that the NOC hadnt traced it sooner as ARP spoofing is very easy to spot with only a cusory glimpse at a sniffer output or a simple tcpdump. ( note: within hours of this "demo" I personaly spotted 5 others, either using Cain or installing it. )