Full Disclosure mailing list archives

Yersinia, a framework for layer 2 attacks


From: Yersinia Authors <yersinia () wasahero org>
Date: Fri, 1 Apr 2005 14:47:59 +0200

Hi,
we are pleased to announce the release of Yersinia, a framework for (mainly) layer 2
attacks. The tool has been presented in BlackHat Europe 2005, so if any of you
could attend the conference will know what it is about.

Yersinia implements several attacks for the following protocols: Spanning
Tree (STP), Cisco Discovery (CDP), Dynamic Host Configuration (DHCP), Hot Standby Router (HSRP), Dynamic
Trunking (DTP), 802.1q and VLAN Trunking (VTP), helping the pen-tester in
different tasks, e.g:

- Becoming the root role in the Spanning Tree
- Creating virtual CDP neighbors
- Setting up rogue DHCP Servers
- Becoming the active router in a HSRP scenario
- Enabling trunk 
- Performing ARP spooing over VLAN Hopping
- Adding/deleting VLANs (via VTP)
- more..

It is a multithreaded application with three main modes: command line, network
client and ncurses GUI, allowing multiple users to launch multiple attacks
simultanously.

Besides, you can decode some Cisco propietary protocols like DTP or
VTP!! 

You can download it from http://yersinia.sf.net and send your doubts,
questions, bugs or greetings to yersinia () wasahero org.

Best regards and happy trails:)

David Barroso Berrueta
Alfredo Andres Omella
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: