packet sniffing

13
Packet Sniffing - By Aarti Dhone

Upload: mohan-kokkula

Post on 03-Nov-2014

12 views

Category:

Documents


1 download

DESCRIPTION

this is very usefull in now days, when we loss the mobiles we can find out from this software.

TRANSCRIPT

Page 1: Packet Sniffing

Packet Sniffing - By Aarti Dhone

Page 2: Packet Sniffing

Introduction

Packet Sniffer Definition:

A packet sniffer is a wire-tap device that plugs into computer networks and eavesdrops on the network traffic.

Page 3: Packet Sniffing

What are the components of a packet sniffer?

1. Hardware : standard network adapters .2. Capture Filter : This is the most important

part . It captures the network traffic from the wire, filters it for the particular traffic you want, then stores the data in a buffer.

3. Buffers : used to store the frames captured by the Capture Filter .

Page 4: Packet Sniffing

What are the components of a packet sniffer?

4. Real-time analyzer: a module in the packet sniffer program used for traffic analysis and to shift the traffic for intrusion detection.

5. Decoder : "Protocol Analysis" .

Page 5: Packet Sniffing

How does a Sniffer Work?

Sniffers also work differently depending on the type of network they are in.

1. Shared Ethernet2. Switched Ethernet

Page 6: Packet Sniffing

How can I detect a packet sniffer?

Ping method ARP method DNS method

Page 7: Packet Sniffing

Packet Sniffer Mitigation

The following techniques and tools can be used to mitigate sniffers: Authentication—Using strong authentication, such as one-time

passwords, is a first option for defense against packet sniffers. Switched infrastructure—Deploy a switched infrastructure to counter

the use of packet sniffers in your environment. Antisniffer tools—Use these tools to employ software and hardware

designed to detect the use of sniffers on a network. Cryptography—The most effective method for countering packet

sniffers does not prevent or detect packet sniffers, but rather renders them irrelevant.

Host A Host BRouter A Router B

Page 9: Packet Sniffing

Working of Cain & Abel

Page 10: Packet Sniffing

What are sniffers used for?

Detection of clear-text passwords and usernames from the network.

Conversion of data to human readable format so that people can read the traffic.

Performance analysis to discover network bottlenecks.

Network intrusion detection in order to discover hackers.

Page 12: Packet Sniffing

Thank You !

Page 13: Packet Sniffing

Questions ?