|
|||||||||||
|
Re: Testing Hubs and Switches
From: Cedric Blancher <blancher(at)cartel-securite.fr>
Date: Wed Dec 11 2002 - 11:36:39 EST
Le mer 11/12/2002 à 10:02, Julian Young a écrit :
Project seem to be stalled : http://www.alaricsecurity.com/ssp.html It was an interesting idea, but the only submission is about ARP cache poisoning, and we all know switches are vulnerable to this, just because of their design. > Further is any one knows of any testing tools / techniques i would also
Taranis will be a good start : http://www.bitland.net/taranis/ Taranis relies on MAC spoofing to redirect network traffic. You can also have a look at dsniff package : http://monkey.org/~dugsong/dsniff/ It comes with macof tool that perform CAM table flooding. A switch can fall into repeater mode for some MAC when CAM table is full. If you want a complete view of switches attacks, have a look at Sean Convery presentation at Black Hat USA 2002 you can find here : http://opensores.thebunker.net/pub/mirrors/blackhat/presentations/bh-usa-02/ You'll find layer 2 attacks such MAC attacks, ARP attacks, protocols attacks (CDP, DTP, VTP), VLAN hopping and others. -- Cédric BlancherReceived on Wed Dec 11 14:53:59 2002 This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:02:31 EDT |
||||||||||
|
|||||||||||