Demonstration: Session hijacking
- TCP/IP weaknesses have been known for decades
- Dug Song's dsniff
includes ARP redirection to facilitate sniffing in switched
environments (often switches are used for security, which is a
mistake)
- Tools like Juggernaut (1.02 patch) and hunt are making
these once sophisticated attacks very easy -- future versions will
deal with switches/routers better, probably add ICMP redirection
support, be even easier to use...
Capture the Flag, Euro style, @ DEFCON 6.0
Copyright © 1998, David Dittrich (All rights reserved)
- Anatomy of a Hijack
- Counter-measures (in order of difficulty)
[Next]
|
[Prev]
|
[Top]
Dave Dittrich <dittrich@cac.washington.edu>
Last modified: Tue Mar 20 17:36:59 PST 2001