Full Disclosure mailing list archives
RE: Caching a sniffer
From: "Motiwala, Yusuf" <motiwala () ti com>
Date: Thu, 11 Mar 2004 16:44:00 +0530
TDR will not work if someone running Sniffer on existing network port. Isn't? Yusuf
-----Original Message----- From: full-disclosure-admin () lists netsys com [mailto:full-disclosure- admin () lists netsys com] On Behalf Of Dave Horsfall Sent: Thursday, March 11, 2004 8:22 AM To: Full Disclosure List Subject: Re: [Full-disclosure] Caching a sniffer On Wed, 10 Mar 2004, Patricio Bruna V. wrote:How can i know if there a sniffer running in my network?When you wake up one day to find that you're 0wn3d :-) Seriously, about the only way I can think of to detect a sniffer with its transmit leads cut is with a Time Domain Reflectometer (TDR) and look for an unexplained impedance bump. -- Dave Horsfall DTM VK2KFU Loyal Unix user since 1975 Booted from Spamtools for dissing the moderator: www.horsfall.org/levine.mail _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
Current thread:
- RE: Caching a sniffer, (continued)
- RE: Caching a sniffer Kenton Smith (Mar 11)
- RE: Caching a sniffer David Bartholomew (Mar 11)
- Re: Caching a sniffer Simon Richter (Mar 12)
- RE: Caching a sniffer Justin Baldini (Mar 12)
- Re: Caching a sniffer Cael Abal (Mar 10)
- Re: Caching a sniffer Lan Guy (Mar 11)
- RE: Caching a sniffer Dave Horsfall (Mar 11)