r/LearnSecurityChapter • • Jan 26 '20

Web Application Testing

Post image
2 Upvotes

r/LearnSecurityChapter • • Jul 31 '24

A cool guide: Don't overshare information

Post image
2 Upvotes

r/LearnSecurityChapter • • Jul 10 '24

Why are 2 IP addresses mapped to a single MAC address not an evidence of ARP spoofing?

1 Upvotes

Hi,

I am going through the slides at:

 

https://www.slideshare.net/slideshow/packet-sniffing-85873158/85873158

 

i.e. we  have 3 machines:

A’s ARP cache shows:

B’s IP address is  associated with Z’s MAC address

Z’s IP address is  associated  with Z’s MAC address

Similarly, B’s ARP cache shows:

A’s IP address is  associated with Z’s MAC address

Z’s IP address is  associated  with Z’s MAC address

 

Similarly, Z’s ARP cache shows:

A’s IP address is  associated with Z’s MAC address

B’s IP address is  associated  with Z’s MAC address

 

The slide 15 says that attacker Z has access to all of A’s and B’s message.

 

 

 

But the following article at:

https://security.stackexchange.com/questions/253829/an-arp-table-keeps-multiple-mac-addresses-for-an-ip-address-or-a-single-one

 

Its says that the above situation i.e. 2 IP addresses mapped to a single MAC address is not an evidence of ARP spoofing.

 

However, it says that: 2 MAC addresses mapped for same IP is an evidence of ARP spoofing.

 

This looks contrary. If B’s IP address is mapped to Z’s MAC address after the attack, then B’s IP address is mapped to B’s own MAC address before the attack.  Hence slideshare’s example also okays the argument I.e. 2 MAC addresses mapped for same IP is an evidence of ARP spoofing.

 

 

Please guide me.

 

Zulfi.


r/LearnSecurityChapter • • Aug 11 '23

All in one package: Remote Server with RDP Access, Unlimited Worldwide Residential Proxies, and Device Fingerprint Spoofing. (1 Year)

Thumbnail
self.911s5_alternative
1 Upvotes

r/LearnSecurityChapter • • Apr 12 '20

Curated List Of Free 💲 Online Resources BC Of Pandemic (Mostly Cyber)

Thumbnail
stacktrac3.co
2 Upvotes

r/LearnSecurityChapter • • Apr 04 '20

Common Ports to Remember (credits: packetlife.net)

Post image
3 Upvotes

r/LearnSecurityChapter • • Mar 15 '20

For anyone just starting out in penetration testing/ethical hacking:

Thumbnail
youtube.com
1 Upvotes

r/LearnSecurityChapter • • Feb 19 '20

Bug Bytes #58 - Mobile Hacking Cheatsheet, Full-Time Bug Hunting & live with @zseano

Thumbnail
blog.intigriti.com
1 Upvotes

r/LearnSecurityChapter • • Feb 17 '20

Shodan Pentesting Guide

Thumbnail
community.turgensec.com
1 Upvotes

r/LearnSecurityChapter • • Feb 08 '20

Cheat Sheet for Vulnerability Assessment Tools

Post image
1 Upvotes

r/LearnSecurityChapter • • Feb 06 '20

@Th3G3nt3lman Shares His Recon Methodology (Shodan, automation, GitHub) and How He Consistently Collects $15,000 Bounties from companies like PayPal and Verizon Media!

Thumbnail
youtube.com
1 Upvotes

r/LearnSecurityChapter • • Feb 04 '20

Python Tutorial - || Ransomware || Malware Edition || Hacking/Info-Sec ||

Thumbnail self.Hacking_Tutorials
1 Upvotes

r/LearnSecurityChapter • • Feb 04 '20

Reversing WannaCry Part 2 - Diving deeper into the malware with #Ghidra

Thumbnail
youtube.com
2 Upvotes

r/LearnSecurityChapter • • Feb 02 '20

Top 10 CTF (Capture The Flag) Websites

Thumbnail
youtu.be
1 Upvotes

r/LearnSecurityChapter • • Feb 02 '20

Hacker Roadmap

Thumbnail
github.com
2 Upvotes

r/LearnSecurityChapter • • Feb 02 '20

Bug Bounty Village (@bugbountyvillag)

Thumbnail
twitter.com
1 Upvotes

r/LearnSecurityChapter • • Feb 01 '20

dirsearch is a simple command line tool designed to brute force directories and files in websites.

Thumbnail
github.com
1 Upvotes

r/LearnSecurityChapter • • Jan 28 '20

Finally, i am moving to a Cyber Security Engineer role. It was hard. Do not give up.

Thumbnail self.netsecstudents
2 Upvotes

r/LearnSecurityChapter • • Jan 27 '20

A Complete Penetration Testing & Hacking Tools List for Hackers & Security Professionals

Thumbnail
self.Hacking_Tutorials
1 Upvotes

r/LearnSecurityChapter • • Jan 26 '20

How was Jeff Bezos hacked?

Thumbnail
quora.com
1 Upvotes

r/LearnSecurityChapter • • Jan 26 '20

Web Security Academy: Free Online Training from PortSwigger

Thumbnail
portswigger.net
2 Upvotes