Search icon CANCEL
Subscription
0
Cart icon
Cart
Close icon
You have no products in your basket yet
Save more on your purchases!
Savings automatically calculated. No voucher code required
Arrow left icon
All Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Newsletters
Free Learning
Arrow right icon
Arrow up icon
GO TO TOP
Hands-On Penetration Testing with Kali NetHunter

You're reading from  Hands-On Penetration Testing with Kali NetHunter

Product type Book
Published in Feb 2019
Publisher
ISBN-13 9781788995177
Pages 302 pages
Edition 1st Edition
Languages
Authors (2):
Glen D. Singh Glen D. Singh
Profile icon Glen D. Singh
Sean-Philip Oriyano Sean-Philip Oriyano
Profile icon Sean-Philip Oriyano
View More author details
Toc

Table of Contents (19) Chapters close

Title Page
Copyright and Credits
About Packt
Contributors
Preface
1. Introduction to Kali NetHunter 2. Understanding the Phases of the Pentesting Process 3. Intelligence-Gathering Tools 4. Scanning and Enumeration Tools 5. Penetrating the Target 6. Clearing Tracks and Removing Evidence from a Target 7. Packet Sniffing and Traffic Analysis 8. Targeting Wireless Devices and Networks 9. Avoiding Detection 10. Hardening Techniques and Countermeasures 11. Building a Lab 12. Selecting a Kali Device and Hardware 1. Other Books You May Enjoy Index

Types of packet-sniffing techniques


Packet sniffing is usually done using the following techniques:

  • Active sniffing
  • Passive sniffing

Active sniffing

Active sniffing involves some sort of action done by a penetration tester, such as redirecting user traffic to another gateway for the purpose of monitoring and capturing the packets on the network. A penetration tester may perform an ARP cache-poisoning attack on a victim’s machine by modifying the IP-MAC entries in the ARP table.

Flooding bogus MAC addressing into a switch will cause a CAM Table overflow, causing the switch to flood all incoming traffic out of all other ports.

Also, installing a Rogue DHCP Sever on the network provides clients with a nonlegitimate default gateway and DNS Server. The victim's traffic will be redirected to potentially malicious websites, and their traffic may be intercepted.

The penetration tester will need to execute a precursor attack to cause a redirection of the victim’s traffic. The following diagram presents...

lock icon The rest of the chapter is locked
Register for a free Packt account to unlock a world of extra content!
A free Packt account unlocks extra newsletters, articles, discounted offers, and much more. Start advancing your knowledge today.
Unlock this book and the full library FREE for 7 days
Get unlimited access to 7000+ expert-authored eBooks and videos courses covering every tech area you can think of
Renews at $15.99/month. Cancel anytime}