Browse > Article
http://dx.doi.org/10.6109/jkiice.2017.21.1.61

Network Hacking and Implementation Techniques using Faked ARP Reply Unicast Spoofing according to various Server Types  

Choi, Jae-Won (Department of Computer Engineering, Kyungsung University)
Abstract
ARP Spoofing is a basic and core hacking technology for almost all sniffing. It makes change the flow of packets by faking the 2nd layer MAC address. In this paper we suggested an efficient hacking technology for sniffing remote servers in the switched network environment. The suggested 'Faked ARP Reply Unicast Spoofing' makes the bidirectional packets sniffing possible between the client and server, and it makes simplify the procedures for ARP sniffing and hacking program. In this paper we researched the network hacking and implementation technologies based on the suggested ARP spoofing. And we researched various types of servers hacking such as Root ID and PW of Telnet/FTP server, Root ID and PW of MySQL DB server, ID and PW of Web Portal Server, and account information and transaction history of Web Banking Server. And also we researched the implementation techniques of core hacking programs for the ARP Spoofing.
Keywords
ARP Spoofing; ARP Sniffing; ARP Spoofing Attack; ARP Spoofing Hacking; Network Security;
Citations & Related Records
Times Cited By KSCI : 2  (Citation Analysis)
연도 인용수 순위
1 Asia e-News. Security frontline, 3100 million threats per day, and time of strife, war without gunfire [Internet]. Available: http://view.asiae.co.kr/news/view.htm?idxno=2016043017134438097.
2 D. I. Yang, Introduction to Information Security and practice-network hacking and security, Seoul, Korea: Hanbit Media Inc., ch. 8, pp. 260-263, 2013.
3 KISA. ARP Spoofing Attacks and Countermeasures Analysis Report [Internet]. Available: http://skyand96.com/128.
4 J. H. Kang etc., "ARP Modification for Prevention of IP Spoofing," Journal of Korea Institute of Information and Communication Engineering, vol. 12, no. 3, pp. 154-160, Sep. 2014.
5 B. K. Ko etc., "A Design of Network Management System for Efficiently Isolating Devices Infected with ARP Spoofing Virus," Journal of Korea Institute of Information and Communication Engineering, vol. 17, no. 3, pp. 641-648, Mar. 2013.   DOI
6 C. Sanders, Packet analysis practice using the Wireshark, Gyeonggi-do, Korea: ACORN Pub., 2012.
7 Naver Blog. Introduction to the sniffing tools Dsniff [Internet]. Available: http://kkn1220.tistory.com/72.
8 H. S. Kang etc., "Defense Technique against Spoofing Attacks using Automated Management of ARP Table for Virtual Machine in Cloud Computing Environment," KIISE 2015 Winter Conference Proceeding, pp. 857-859, 2015.