Passive Sniffing

Active Sniffing.

Gratuitous ARP requests

Gratuitous ARP requests

Local to Remote MITM

Ex. .

  1. Host A has IP of the gateway but not the MAC address of the gateway device. And he is trying to reach out to WLAN.
  2. M can use Gratuitous ARP reply to advertise itself as the gateway : sending out arp reply packet with FORGED_IP_DEFAULT_GATEWAY + M_MAC_ADDRESS . tho,

DHCP Spoofing

DHCP is a service usually runing on routers to dynamically assign or revoke IP address to new hosts on the network.