Ethical Hacking: Sniffers

Ethical Hacking: Sniffers

2h 9mIntermediate2023-04-24

Authors

Lisa Bock

Lisa Bock

Security ambassador with a broad range of IT skills and knowledge

Course details

Ethical hacking involves testing to see if an organization's network is vulnerable to outside attacks. It's one of the most desired stills for any IT security professional. In this course—which maps to the Certified Ethical Hacker v12 certification—Lisa Bock provides an overview of what a sniffer is, and how hackers use it to intercept network traffic. Lisa gives a demonstration of what a MAC attack is, and how ethical hackers can prevent them. She then dives into DHCP, ARP, and DNS, and how hackers can penetrate a network from these services, before showing ethical hackers how to countermeasure such attacks. Lisa concludes the course with an overview of the various sniffing tools and techniques used today by hackers, with discussion of how ethical hackers can protect their network.

Skills covered

WiresharkSecurity TestingNetwork AdministrationCert PrepCybersecurityNetwork and System AdministrationOpen Source

Concepts

Introduction

  • Visualizing network traffic
  • What you should know
  • Hacking ethically

Sniffing Overview

  • Sniffing network traffic
  • Using other sniffing tools
  • Dissecting the OSI model
  • Comparing passive and active attacks
  • Using Wireshark
  • Tapping into the data stream

Spoofing Attacks

  • Launching a macof attack
  • Exploiting Layer 2 protocols
  • Spoofing a MAC address
  • Defending against MAC attacks
  • VLAN hopping attack
  • Spoofing IRDP

Dissecting DHCP

  • Investigating DHCP
  • Depleting the DHCP pool
  • Deploying a rogue DHCP server
  • Defending against DHCP attacks
  • Challenge - Identifying key elements in a capture
  • Solution - Identifying key elements in a capture

Reviewing ARP

  • Describing ARP
  • Exploring ARP spoofing tools
  • Detecting ARP spoofing
  • Defending against ARP attacks

Attacking DNS

  • Summarizing DNS
  • Caching and forgery
  • Poisoning DNS
  • Guarding against DNS attacks
  • Challenge - Investigate a DNS header
  • Solution - Investigate a DNS header

Sniffing Tools and Techniques

  • Capturing images
  • Examining HTTP headers and URLs
  • Scooping data with TShark
  • Sniffing tools for mobile devices
  • Investigating Omnipeek
  • Guarding against sniffing

Conclusion

  • Next steps
80,000 Toman