During a routine network security audit, an administrator notices that internal workstation traffic destined for external web services is being redirected to an unauthorized local host on the same switch segment. An inspection of local workstation cache tables reveals that the default gateway's IP address has been mapped to the attacker's network interface card address, allowing the attacker to inspect and modify traffic prior to forwarding it. Which of the following attack types has occurred?
- ARP PoisoningCevap
- BDNS Poisoning
- CPort Scanning
- DDNS Amplification
Cevap
ARP Poisoning
ARP Poisoning occurs when an attacker broadcasts spoofed Address Resolution Protocol messages across a local area network. This links the attacker's MAC address with the IP address of a legitimate target, such as the default gateway, enabling the attacker to intercept, inspect, or modify local network traffic.
Adım Adım Çözüm
Anahtar Kavram
Address Resolution Protocol (ARP) Poisoning and Man-in-the-Middle (MitM) Attacks
Tahmini Süre:1m 15s