Network Hacking and Implementation Techniques using Faked ARP Reply Unicast Spoofing according to various Server Types

Jaewon Choi
{"title":"Network Hacking and Implementation Techniques using Faked ARP Reply Unicast Spoofing according to various Server Types","authors":"Jaewon Choi","doi":"10.6109/jkiice.2017.21.1.61","DOIUrl":null,"url":null,"abstract":"ARP Spoofing is a basic and core hacking technology for almost all sniffing. It makes change the flow of packets by faking the 2nd layer MAC address. In this paper we suggested an efficient hacking technology for sniffing remote servers in the switched network environment. The suggested 'Faked ARP Reply Unicast Spoofing' makes the bidirectional packets sniffing possible between the client and server, and it makes simplify the procedures for ARP sniffing and hacking program. In this paper we researched the network hacking and implementation technologies based on the suggested ARP spoofing. And we researched various types of servers hacking such as Root ID and PW of Telnet/FTP server, Root ID and PW of MySQL DB server, ID and PW of Web Portal Server, and account information and transaction history of Web Banking Server. And also we researched the implementation techniques of core hacking programs for the ARP Spoofing. 키워드 : ARP 스푸핑, ARP 스니핑, ARP 스푸핑 공격, ARP 스푸핑 해킹, 네트워크보안 Key word : ARP Spoofing, ARP Sniffing, ARP Spoofing Attack, ARP Spoofing Hacking, Network Security Received 27 September 2016, Revised 29 September 2016, Accepted 13 October 2016 * Corresponding Author Jae-Won Choi(E-mail:choejw@ks.ac.kr, Tel:+82-51-663-4786) Department of Computer Science and Engineering, Kyungsung University, Busan 48434, Korea Open Access http://doi.org/10.6109/jkiice.2017.21.1.61 print ISSN: 2234-4772 online ISSN: 2288-4165 This is an Open Access article distributed under the terms of the Creative Commons Attribution Non-Commercial License(http://creativecommons.org/li-censes/ by-nc/3.0/) which permits unrestricted non-commercial use, distribution, and reproduction in any medium, provided the original work is properly cited. Copyright C The Korea Institute of Information and Communication Engineering. Journal of the Korea Institute of Information and Communication Engineering 한국정보통신학회논문지(J. Korea Inst. Inf. Commun. Eng.) Vol. 21, No. 1 : 61~71 Jan. 2017","PeriodicalId":136663,"journal":{"name":"The Journal of the Korean Institute of Information and Communication Engineering","volume":null,"pages":null},"PeriodicalIF":0.0000,"publicationDate":"2017-01-31","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"The Journal of the Korean Institute of Information and Communication Engineering","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.6109/jkiice.2017.21.1.61","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

ARP Spoofing is a basic and core hacking technology for almost all sniffing. It makes change the flow of packets by faking the 2nd layer MAC address. In this paper we suggested an efficient hacking technology for sniffing remote servers in the switched network environment. The suggested 'Faked ARP Reply Unicast Spoofing' makes the bidirectional packets sniffing possible between the client and server, and it makes simplify the procedures for ARP sniffing and hacking program. In this paper we researched the network hacking and implementation technologies based on the suggested ARP spoofing. And we researched various types of servers hacking such as Root ID and PW of Telnet/FTP server, Root ID and PW of MySQL DB server, ID and PW of Web Portal Server, and account information and transaction history of Web Banking Server. And also we researched the implementation techniques of core hacking programs for the ARP Spoofing. 키워드 : ARP 스푸핑, ARP 스니핑, ARP 스푸핑 공격, ARP 스푸핑 해킹, 네트워크보안 Key word : ARP Spoofing, ARP Sniffing, ARP Spoofing Attack, ARP Spoofing Hacking, Network Security Received 27 September 2016, Revised 29 September 2016, Accepted 13 October 2016 * Corresponding Author Jae-Won Choi(E-mail:choejw@ks.ac.kr, Tel:+82-51-663-4786) Department of Computer Science and Engineering, Kyungsung University, Busan 48434, Korea Open Access http://doi.org/10.6109/jkiice.2017.21.1.61 print ISSN: 2234-4772 online ISSN: 2288-4165 This is an Open Access article distributed under the terms of the Creative Commons Attribution Non-Commercial License(http://creativecommons.org/li-censes/ by-nc/3.0/) which permits unrestricted non-commercial use, distribution, and reproduction in any medium, provided the original work is properly cited. Copyright C The Korea Institute of Information and Communication Engineering. Journal of the Korea Institute of Information and Communication Engineering 한국정보통신학회논문지(J. Korea Inst. Inf. Commun. Eng.) Vol. 21, No. 1 : 61~71 Jan. 2017
基于不同服务器类型的虚假ARP应答单播欺骗的网络攻击与实现技术
ARP欺骗几乎是所有嗅探攻击的基础和核心技术。它通过伪造第二层MAC地址来改变数据包的流。本文提出了一种有效的嗅探交换网络环境中远程服务器的黑客技术。提出的“伪ARP应答单播欺骗”使客户端和服务器之间的双向报文嗅探成为可能,简化了ARP嗅探和黑客程序的程序。本文研究了基于建议的ARP欺骗的网络攻击和实现技术。研究了Telnet/FTP服务器的Root ID和PW、MySQL DB服务器的Root ID和PW、Web Portal服务器的ID和PW、Web Banking服务器的账户信息和交易历史等各种类型的服务器黑客攻击。研究了ARP欺骗的核心黑客程序的实现技术。키워드:ARP스푸핑,ARP스니핑,ARP스푸핑공격,ARP스푸핑해킹,네트워크보안关键字:ARP欺骗,ARP嗅探,ARP欺骗攻击,ARP欺骗攻击,网络安全收到2016年9月27日,修订2016年9月29日,接受了2016年10月13日*通讯作者Jae-Won崔(电子邮件:choejw@ks.ac.kr, Tel: + 82-51-663-4786)计算机科学与工程系,Kyungsung大学,48434年釜山韩国开放访问http://doi.org/10.6109/jkiice.2017.21.1.61打印ISSN: 2234 - 4772在线ISSN:2288-4165这是一篇在知识共享署名非商业许可(http://creativecommons.org/li-censes/ by-nc/3.0/)的条款下发布的开放获取文章,该许可允许在任何媒介上不受限制的非商业使用、分发和复制,前提是正确引用原始作品。版权所有C韩国信息通信工程研究院。韩国信息通信工程学院学报[J]。韩国国际研究所。Eng)。Vol. 21, No. 1: 61~71 Jan. 2017
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信