Vulnerability Development mailing list archives

Re: chaging your @home IP address... could you take a bunch of them....probably.


From: Bugtraq Mailing Lists <bugtraq () bugtraq towardex com>
Date: Thu, 7 Feb 2002 16:34:21 -0500 (EST)



On Thu, 7 Feb 2002, Bugtraq Mailing Lists wrote:

in my post I was not talking about @home, but cable lans in general.  Also
ingress will only filter ip addresses which don't exist in the lan, correct?
Correct.

  well if you spoof ip addresses that do exist on your lan you can then send
and recieve packets.
 Still won't work. You can attack people with it, but when your source IP
 header in TCP/IP packet is forged, the receiving end will reply to the
 forged address, in which physically does not exist. Therefore a
 complete connection will not be made in such a case. (Although the ingress
 filter will not notice that since the IP you are spoofing to is within the
 existing LAN subnet.)

 > >
_________________________________________________________________
Chat with friends online, try MSN Messenger: http://messenger.msn.com





Current thread: