Posts tagged proper tools
sniffing lan networks, my way
0Hi there
it is bad habit to eavesdropping others conversations. It is a problem of security and ethics. Although it is a must topic for people who work in security and network.
Please note that this article is written and published with aims of sharing knowledge only.
Let things start:
First we need to discuss the environment that we will work in. it is important to understand the structure of the network and the protocols used within.
Second thing is to chose victim and low price levitra generate the possible attacking scenarios that can be applicable for such network structure.
Third is to locate the proper tools and start the first mock attack.
Environment testing:
It is obvious that you will not ask the network department about the blueprints of the network structure. Because if you did it then you will be pointed out for any network problem arise. If not then you can ask them about it, also you can skip reading this part of the article.
Now we need to determine our pc location in the whole network. Which level we are on, and which switch we are linked with.
This can be done by using ipconfig command in the CMD.exe. unix/linux users use ifconfig instead.

Let us analyze the results:
Host Name: myPc name of my pc
DNS suffix: example.com domain of the network
IP Address: 172.23.23.251 my IP
Subnet Mask: 255.255.0.0 Mask for filtering IPs
Gateway: 172.23.5.1 gateway used by my pc
DNS Servers 172.18.1.23 DNS Server IP
Assumption:
• MyPc is connected to a Gateway on the same sub network. 172.23.0.0
• There is another sub network with DNS Service. 172.18.0.0
• Router used to connect sub networks
• The router connected to the internet
Figures, assumed network structure draft.
cialis 100 alt=”04194f3efb2″ width=”549″ height=”279″ />
Scenarios:
Here we will take a simple scenario, where victim (call it vPc) is in the same sub network as myPc.

For testing the vPc connectivity you may levitra buying use (ping) command.
Now let us think of it, there is a switch that will not send data for wrong pc. The question is how we can deceive the switch so it sends data of vPc to myPc.
One solution is Man In The middle attack (MITM). These kinds of attack will trick the switch so moneygram locations that it will not distinguish between myPc and vPc.
MITM can be done using much kind of methods. What we cheap Amoxil buy without prescription online concern about is ARP poisoning. Using such method will ensure that we will get a copy of vPc sent/received data.
Tools:
There are many tools for doing such job. Before that we need to specify functionality we need for our attacks.
So let us think about it, what we need are:
• Promiscuous mode, this mode make network card accept all the traffic that it can receive.
• ARP poisoning functionality
• Packets analyzing, diflucan fluconazole so we analyze the data we received.
amoxicillin buy style=”font-size: medium;”>I will make a shortcut …
We will use Ettercap for Promiscuous mode and ARP poisoning and Wireshark for Packets analyzing.
Here attack goes,
Part Ettercap:
1. Run Ettercap
2. Choose Sniff
3. Unified sniffing
4. Choose the proper NIC
5. Choose Current Targets
6. Add vPc IP to Target1
7. Add Gateway IP to Target2
8. Choose scan for hosts
9. Choose MITM
10. Choose ARP poisoning
11. Keeps it running!
Part cheap Drugstore online buy Ampicillin Wireshark:
1. Run Wireshark
2. Choose capture
3. Choose start
Now you are receiving date send/received from both myPc and vPc. You are free to play with options.
Ok now you are receiving other people data. Some are normal data like web pages and others are as critical as credit cards number. Please do not try this knowledge for harm others. Otherwise, be sure that nobody will capture you using same methods.
Yamani