基于MAC欺骗技术的嗅探器原型设计与实现
收稿日期: 2009-11-02
修回日期: 2010-01-20
网络出版日期: 2010-12-25
基金资助
网络安全与密码技术福建省高校重点实验室开放课题基金资助项目(07A004)
Design and Implementation of the Sniffer Prototype Based on the MAC Spoofing
Received date: 2009-11-02
Revised date: 2010-01-20
Online published: 2010-12-25
陈信男1,胡华平1,2,岳虹2 . 基于MAC欺骗技术的嗅探器原型设计与实现[J]. 计算机工程与科学, 2010 , 32(12) : 15 -18 . DOI: 10.3969/j.issn.1007130X.2010.
In the switchbased LAN environment,the means of defending the ARP spoofing is maturing,leading to the sniffer based on the ARP spoofing is vulnerable to being intercepted and killed by security software,so it lacks sniffing effect. In this paper,one nonARP spoofing,which is called MAC spoofing,is proposed,and a LAN sniffer prototype based on the MAC spoofing is also designed and implemented. Compared with the traditional ARP spoofing,the MAC spoofing can bypass a variety of ARP spoofing defense tools and succeed to intercept the network data,as well as carrying on the Denial of Service attacks. Through the use of a timealternate mechanism,a filtering mechanism and other key technologies,the efficiency and accuracy of the sniffer can be highly improved. The testing result shows that the sniffer may be better to break through the interception and killing of security software,and achieve the effect of sniffing.
/
| 〈 |
|
〉 |