ARP攻击之Kali Linux局域网断网攻击


Special statement:
The purpose of our study of cyber security technology should be to maintain the security of the cyber world and protect the private information of ourselves and others from being illegally stolen and disseminated. Please comply with your local laws. Do not take advantage of the relevant technology introduced in this article to do anything that deviates from morality or against the law.

在这里,作为攻击者的计算机使用的是安装在VMware Workstation中的Kali Linux,我们需要在虚拟机的设置中将Kali的联网方式改成“桥接模式”,并且不要勾选“复制物理网络连接状态”。



ettercap -G #打开Ettercap的GUI界面

依次点击“Sniff(嗅探) -> Unified sniffing(统一嗅探)”,之后弹出如下界面让选择进行扫描的网络接口(Network interface)这里我们使用默认的eth0端口。点击“OK”。之后依次点击“Hosts(主机) -> Scan for hosts(扫描主机)”。
这时会出现一个进度条,等待进度条结束,依次点击“Hosts -> Hosts list(主机列表)”即可显示本机所在局域网中除本机之外,当前已连接至网络的设备的IP地址和MAC地址。


我们使用Kali Linux中的Arpspoof进行ARP攻击。


 ping www.baidu.com



 arpspoof [-i interface] [-c own|host|both] [-t target] [-r] host
 arpspoof -i eth0 -t


 ping www.baidu.com




