|
|
|||||||
| Computers & Information Technologies « Everything related to computers and internet. » |
![]() |
|
|
Share | Thread Tools | Search this Thread |
|
|
#1 |
|
Registered Member
Last Online: 02-14-2010
Join Date: Mar 2006
Posts: 846
Thanks: 71
Thanked 293 Times in 217 Posts
Groans: 0
Groaned at 0 Times in 0 Posts
|
ARP stands for: Address Resolution Protocol
its also known as ARP SPOOFING.... It's done by sending fake messages to an ethernet LAN, these malformed requests confuse local switches and routers and stuff, making them forward all traffic to a specified mac address (the one of the attacker) or an unreachable or unexisting one. It can be used to Sniff data off a network (you forward the traffic to your pc and then ur pc analyses it for passwords,conversations,all kinds of data... and then your pc you reroute it to its destination) and to do Denial Of Service (DoS) attacks..... Anyone has any experience with ARP sniffing? I like messin around with it i used to know a lot about it (by analyzing the data sent by CAIN AND ABEL when i enable sniffing, to know what the sent packets contain) and try stuff with vb's winsock..........
__________________
--Capitalisation is the only difference between "I helped my uncle Jack off a horse" and "I helped my uncle jack off a horse" !! http://img482.imageshack.us/img482/4889/hell7ta.jpg |
|
|
|
|
|
#2 |
|
Registered Member
Last Online: 12-13-2007
Join Date: Jan 2007
Posts: 51
Thanks: 0
Thanked 3 Times in 2 Posts
Groans: 0
Groaned at 0 Times in 0 Posts
|
lol nice
Cain&Abel/Ethreal is a good combination ARP poisoning IS pretty deadly if used correctly
|
|
|
|
|
|
#3 |
|
Ma ghayro
Last Online: 04-19-2018
Join Date: Dec 2005
Posts: 5,592
Thanks: 1,765
Thanked 4,201 Times in 2,361 Posts
Groans: 12
Groaned at 18 Times in 11 Posts
|
Let me try to get it,
let's say i made a soft in vb using winsock to connect to that router then i send fake messages to drag the packets to my system then rout it back to the destination? is it like adding another router which is your pc?
__________________
http://twitter.com/danymoussa
|
|
|
|
|
|
#4 |
|
Registered Member
Last Online: 04-15-2018
Join Date: Aug 2006
Posts: 1,549
Thanks: 31
Thanked 213 Times in 151 Posts
Groans: 0
Groaned at 1 Time in 1 Post
|
The latest version is faster and contains a lot of new features like APR (Arp Poison Routing) which enables sniffing on switched LANs and Man-in-the-Middle attacks. The sniffer in this version can also analyze encrypted protocols such as SSH-1 and HTTPS, and contains filters to capture credentials from a wide range of authentication mechanisms. The new version also ships routing protocols authentication monitors and routes extractors, dictionary and brute-force crackers for all common hashing algorithms and for several specific authentications, password/hash calculators, cryptanalysis attacks, password decoders and some not so common utilities related to network and system security
http://www.oxid.it/cain.html ================== How good can it do that, I buy stuff from the net with my visa!? ![]() so can they get the number using this??? Should I get a Modem connection to buy stuff mine hala2 w rayi7???w btw: where do you live ya god??? ![]() ![]() ![]() ![]() <the emoticon depends on where you live
|
|
|
|
|
|
#5 |
|
Registered Member
Last Online: 02-14-2010
Join Date: Mar 2006
Posts: 846
Thanks: 71
Thanked 293 Times in 217 Posts
Groans: 0
Groaned at 0 Times in 0 Posts
|
hahahaa
Yep nowhere is safe anymore unless its SSH (not even safe at all :P) i live somewhere near zalka and xcoder, yep hek chi
__________________
--Capitalisation is the only difference between "I helped my uncle Jack off a horse" and "I helped my uncle jack off a horse" !! http://img482.imageshack.us/img482/4889/hell7ta.jpg |
|
|
|
|
|
#6 |
|
Registered Member
Last Online: 08-01-2007
Join Date: Jan 2007
Posts: 33
Thanks: 0
Thanked 0 Times in 0 Posts
Groans: 0
Groaned at 0 Times in 0 Posts
|
wuuuuuuuuuuut ZALKA???
thats where i live dude....You and xcoder are my neighbors it seems Which cable provider do u use???(to see if theres any need to switch mine lol) Ive been readin some dangerous stuff u do !! |
|
|
|
|
|
#7 |
|
Registered Member
Last Online: 02-14-2010
Join Date: Mar 2006
Posts: 846
Thanks: 71
Thanked 293 Times in 217 Posts
Groans: 0
Groaned at 0 Times in 0 Posts
|
actually its biakout :P (bye2out), w chou dangerous :P ? elaborate.. :P
andd ta ydal el thread bel subject, anybody ever got caught sniffing and contacted by his local ISP ?
__________________
--Capitalisation is the only difference between "I helped my uncle Jack off a horse" and "I helped my uncle jack off a horse" !! http://img482.imageshack.us/img482/4889/hell7ta.jpg |
|
|
|
|
|
#8 |
|
Registered Member
Last Online: 12-13-2007
Join Date: Jan 2007
Posts: 51
Thanks: 0
Thanked 3 Times in 2 Posts
Groans: 0
Groaned at 0 Times in 0 Posts
|
the only way it's able to sniff HTTPS/SSH session it's because it intercepts the certificates and act as a man in the middle.
anyway, ARP Spoofing can be easily detected. We had this problem before and now we have dedicated machines running to detect anyone trying to poison ARP |
|
|
|
|
|
#9 |
|
Registered Member
Last Online: 07-06-2012
Join Date: Jan 2007
Posts: 120
Thanks: 0
Thanked 51 Times in 33 Posts
Groans: 0
Groaned at 0 Times in 0 Posts
|
Not wanting to correct anyone but there's a way to go totally undetected by today's sniffers/poisons/tracers/whatever.. Using SSH with a custom script made using RSA 1024bits. I wrote one I have it somewhere, it can also be found on the web.
__________________
Abusing Tha Power |
|
|
|
|
|
#10 | |
|
Registered Member
Last Online: 04-15-2018
Join Date: Aug 2006
Posts: 1,549
Thanks: 31
Thanked 213 Times in 151 Posts
Groans: 0
Groaned at 1 Time in 1 Post
|
Quote:
w ba3dena, I am sure some of them steel there client stuff so... ma ba3rif that's the problem with internet in Lebanon, uno you have to trust the guy, W i don't know how much people are trust worthy. |
|
|
|
|
![]() |
|
| Tags |
| apr or arp, networking, poisoning |
| Currently Active Users Viewing This Thread: 1 (0 members and 1 guests) | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Cadbury chocolates (POISONING) READ VERY IMPORTANT | Ghnadine | Health & Science Room | 18 | 07-02-2007 09:47 PM |
| let's talk telecommunications and networking!!! | Charles | Computers & Information Technologies | 14 | 02-20-2007 02:53 PM |