Full Version: Ip Spoofing
Thebass
Anyone know any all-in-one tool for IP spoofing? both win32 and nix are welcome biggrin.gif

Im tried having 100 synfloods ect.
usanet21
go to anonymizer.com and try the tools there.
damn, they got the best damn tools available.
Thebass
no, I want a tool to spoof, not go trough a proxy or anything.

Istead of having 1000 of tools on my PC (packet generators, SYN floods, ect.) that are requered to spoof your IP, arent there any multi or something that have all the IP spoofing tools in?
usanet21
actually, the hacker community is still developing it.
check it out in www.hackology.com
its called the black angel project
usanet21
or for spoofing u can try to use static ip..i dont know man.....there are many articles out there that teaches you
SyN/AcK
The black angel project sounds cool. It depends though on what you are trying to do. If you were on a local network you could do this with ARP Cache poisoning.
GhostCow
what is ARP cache poisoning?

here's some info about ARP that i found on google.. intresting...
http://www.erg.abdn.ac.uk/users/gorry/cour...-pages/arp.html
SyN/AcK
ARP stands for Address Resolution Protocol which basically refers to the resolution of an Address (Your IP address within a switched network) to a MAC (Media Access Control).

The idea of ARP Cache Poisoning is that you "inject" a IP to MAC mapping inside of a targets ARP Cache. Lets pretend that these ARP Cache Tables work sort of like DNS tables for ease of understanding. Basically there is a cache kept of IP to MAC mappings for the switch, and by putting in a new one (usually one that points to your own machine inside the network) you can intercept traffic for that machine.

This type of attack is also commonly know as the "man in the middle" attack. The basic idea as I see it is to poison the arp cache forcing traffic that is supposed to go to and from your target machine to actually going to you. You could then setup ipforwarding (or something like it) to continue the communication out to the internet, and back to the target, thereby making you a stop in the middle where you could sniff all incoming traffic just as easily as if you were all on a hub.

Short of this, you could also ARP flood the switch. By putting to much stress on a switch with this ARP flooding, you could force the switch to go into a "safety" mode where it will act as a hub. Then you could sniff traffic again like you were on a hub and not a switch.

As I said, I don't know if that is what this question was going for or not, to vague. ph34r.gif
[Sunny]
yo but for arp spoofing u have to be in the same network , if u have a victim in a enterprise network it is realy funny . To redirect traffic in the inet try dns spoofing it is much funnier smile.gif
Thebass
QUOTE (GhostCow @ Jan 25 2004, 05:14 PM)
what is ARP cache poisoning?

here's some info about ARP that i found on google.. intresting...
http://www.erg.abdn.ac.uk/users/gorry/cour...-pages/arp.html

please don't hijack the topic sad.gif

Im searching for some "all-in-one" tool.

When I spoof my IP, I havde 100 programs open at the same time.
Now, are there any program witch have all the tools reqierd instead i have to run 1000 programs?
br0ken
black (filtered) angel dude.... just wait for it an for now use ur multithousand prggies.
br0ken
heh heh heh. it cencors me. f uck.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.