3. MITM Attacks Flashcards
1
Q
On-Path
A
Man-in-the-Middle:
- Eavesdropping
- Obtain information secretly
- Allows control over network
2
Q
On-path positioning
A
- Wireless: automatically allows On-Path attack
2. LAN requires physical connections
3
Q
On-path steps
A
- position
- victim is not aware
- info collected
4
Q
APR Poisoning
A
Address Resolution Protocol - OSI Layer 2.
MITM mac address
5
Q
arpspoof
A
Tool for ARP Spoofing
6
Q
dnsspoof
A
sub dns for legit site
7
Q
bettercap
A
Tool for ARP and DNS poisoning
8
Q
Port Stealing
A
- Works only in LANs
2. Uses victim’s MAC address
9
Q
SSL Stripping
A
converts HTTPS to HTTP
Redirect https port (80) to stripped http port (8080)
10
Q
sslstrip
A
tool for SSLSTRIPPING
11
Q
ARP Poisoning
A
Floods ARP tables