skip to main
|
skip to sidebar
Cybexin's Blog - Network Security Blog
Monday, May 11, 2009
DNS Spoof Virutal Hosts
DNS Spoofing is a type of MITM attack in which victim's computer is sent a fake DNS reply for a particular website,forcing his machine to visit a different site.But when this Spoofed IP is hosting multiple virtual sites with multiple Host Headers and attacker wants to use this IP as a fake DNS reply for DNS Spoofing then the server will not be able to determine the proper destination as Host Header will be missing in the request.Hence DNS Spoofing attack will not success.
In this video , Ettercap is combined with a C program to change the host header on the fly and submits a new get request to the web server, which allows an attacker to successfully launch DNS Spoofing attack with a IP hosting multiple virtual web sites.
More info can be found
here
.
No comments:
Post a Comment
Newer Post
Older Post
Home
Subscribe to:
Post Comments (Atom)
Advertisements
Followers
milw0rm.com
Loading...
SecurityFocus Vulnerabilities
Loading...
Live Traffic Map
Feedjit Live Blog Stats
Blog Archive
▼
2009
(136)
►
November
(1)
►
September
(3)
►
August
(2)
►
July
(5)
►
June
(7)
▼
May
(12)
PHP Remote File Inclusion
Top Ten Web Hacking Techniques
Aircrack-ng
SSH Hacking
Using NetCat as a Backdoor
Metasploit Autopwn tool
Dump Cleartext Passwords From Windows Memory
DNS Spoof Virutal Hosts
Attacking Oracle with the Metasploit Framework
Auditing Anti-Virus Configuration and Installation...
Exploiting XP with SAINT
Exploiting Windows Vista with Core Impact 8
►
April
(14)
►
March
(13)
►
February
(28)
►
January
(51)
►
2008
(82)
►
December
(70)
►
October
(11)
►
September
(1)
About Me
Cybexin
View my complete profile
Site Views
blogadda.com
Advertisements
No comments:
Post a Comment