
9
© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialPresentation_ID
17
ARP Spoofing Attack – The Man-in-the-
Middle
Real
Default
Gateway
10.1.1.1
Gratuitous ARP
(ARP Reply) –
“I’m 10.1.1.1”
ARPs for default
gateway
Attacker only needs to be attached on same
subnet as one victim – sends Gratuitious
ARP onto subnet.
IP/ARP bindings incorrectly set at innocent
endstation
Tools Easily Downloadable and is simpler
than most video games (GUI or CLI)
Snoops
Data
© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialPresentation_ID
18
A Simple Tool, Some Dangerous
Consequences…
Neither the victim nor the default
gateway is aware of the attack
Passwords can be snooped
Client, employee or company-
confidential information can be
compromised
Stealing Passwords
Email Server
Si
Si
Victim
Comentarios a estos manuales