Spoofing and "Man in Middle" attack in Kali Linux - Using Ettercap


Ettercap is a free and open source network security tool for man-in-the-middle attacks on LAN. It is capable of intercepting traffic on a network segment, capturing passwords and conducting active eavesdropping against a number of common protocols.

A MITM(man-in-the-middle) attack happens when a communication between two systems is intercepted by an outside entity. This can happen in any form of online communication, such as email, social media, web surfing, etc. Not only are they trying to eavesdrop on your private conversations, they can also target all the information inside your devices.


Spoofing and Man in Middle attack in Kali Linux - Using Ettercap

The goal of an attack is to steal personal information, such as login credentials, account details and credit card numbers. Targets are typically the users of financial applications, SaaS businesses, e-commerce sites and other websites where logging in is required.


we will use Ettercap to perform an ARP spoofing attack and set ourselves between a client and a web server.



Lets Start with Spoofing and "Man in Middle" attack Using Ettercap

Step 1:-Open Ettercap and its default install in kali Linux Under Sniffing and Spoofing.


Spoofing and Man in Middle attack in Kali Linux - Using Ettercap

Get Ready :-


Spoofing and Man in Middle attack in Kali Linux - Using Ettercap


Step 2:- Click on Unifield sniffing under sniff


Spoofing and Man in Middle attack in Kali Linux - Using Ettercap


Step 3:- Click Ok


Spoofing and Man in Middle attack in Kali Linux - Using Ettercap


Step 4:- Now Ettercap should load into attack mode. Click on Hosts and select Scan for hosts from the menu.


Spoofing and Man in Middle attack in Kali Linux - Using Ettercap


Spoofing and Man in Middle attack in Kali Linux - Using Ettercap


Step 5:- Click on Hosts again, and this time select Hosts list from the menu.


Spoofing and Man in Middle attack in Kali Linux - Using Ettercap


Step 6:- Click the IP address of the router and click the Add to Target 1 button. Here i have used to target my Window i.p


Spoofing and Man in Middle attack in Kali Linux - Using Ettercap


Step 7:- Now your target i.p Added.


Spoofing and Man in Middle attack in Kali Linux - Using Ettercap


Step 8:- Now click Mitm on the toolbar and select Arp poisoning…


Spoofing and Man in Middle attack in Kali Linux - Using Ettercap

Address Resolution Protocol poisoning (ARP poisoning) is a form of attack in which an attacker changes the Media Access Control (MAC) address and attacks an Ethernet LAN by changing the target computers ARP cache with a forged ARP request and reply packets.


Step 9:- When the question box shows up, check the box next to Sniff remote connections and hit.


Spoofing and Man in Middle attack in Kali Linux - Using Ettercap


Step 10:- Start Sniffing


Spoofing and Man in Middle attack in Kali Linux - Using Ettercap


Spoofing and Man in Middle attack in Kali Linux - Using Ettercap


Spoofing and Man in Middle attack in Kali Linux - Using Ettercap


For References :-




I hope you enjoyed this article.



Sharing is caring

google
linkedin

About Author

Akash is a co-founder and an aspiring entrepreneur who keeps a close eye on open source, tech giants, and security. Get in touch with him by sending an email (akashchugh1994@gmail.com).


You may also like :-




Leave a Comment

Your email address will not be published. Required fields are marked *




Stay Connected

Popular Posts

Get Latest Stuff Through Email


Who Should Read TechTrick?

All the tricks and tips that TechTrick provides only for educational purpose. If you choose to use the information in TechTrick to break into computer systems maliciously and without authorization, you are on your own. Neither I (TechTrick Admin) nor anyone else associated with TechTrick shall be liable. We are not responsibe for any issues that caused due to informations provided here. So, Try yourself and see the results. You are not losing anything by trying... We are humans, Mistakes are quite natural. Here on TechTrick also have many mistakes..