IP-spoofing Demystified (Trust-Relationship Exploitation)

By Security docs about Network Security on Tuesday, December 27, 2005
Comments Off
Filled Under: Uncategorized

The purpose of this paper is to explain IP-spoofing to the masses. IP-spoofing is complex technical attack that is made up of several components. In this paper, daemon9 details the attack, including examples and relevant operating system and networking information.

Passive Fingerprinting : IDing remote hosts, without them knowing

By Security docs about Network Security on Tuesday, December 27, 2005
Comments Off
Filled Under: Uncategorized

Passive Fingerprinting is a stealth method that can be used to get information about a remote computer. This article written by Lance Spitzner shows a way to determine the operating system and other characteristics of a remote host using nothing more than sniffer traces. Though not 100% accurate, this method can get surprisingly good results.

DNS ID Hacking

By Security docs about Network Security on Tuesday, December 27, 2005
Comments Off
Filled Under: Uncategorized

This paper written by the ADM Crew describes a way to guess DNS ID. This method is based on a vulnerability on DNS Protocol. This technique allows an attacker to spoof DNS answer, and could be used for traffic redirection, man-in-the-middle attacks…

ICANN Concludes 24th International Public Meeting in Vancouver with Action on Governmental Advisory Committee Evolution and Internationalised Domain Names

By Internationalized Domain Names on Friday, December 9, 2005
Filled Under: Uncategorized