Detection of promiscuous devices that don't have an IP?

From: spoofy root (spoofy_at_gmail.com)
Date: 10/01/05

  • Next message: Jarmon, Don R: "RE: Vulnerability assessment for small business"
    Date: Fri, 30 Sep 2005 22:11:55 -0500
    To: pen-test@securityfocus.com
    
    

    I've seen quite a few papers on detecting devices set to be
    promiscuous but they seem to depend on arp requests and the host
    having an IP for example
    http://www.securityfriday.com/promiscuous_detection_01.pdf

    However... I see no reason to a passive device to have a IP (or did I
    read that pdf wrong?) ..

    Anyway.. you guys know of any papers that cover promiscuous device
    detection for interfaces that don't have an IP assigned to it?

    thanks

    ------------------------------------------------------------------------------
    Audit your website security with Acunetix Web Vulnerability Scanner:

    Hackers are concentrating their efforts on attacking applications on your
    website. Up to 75% of cyber attacks are launched on shopping carts, forms,
    login pages, dynamic content etc. Firewalls, SSL and locked-down servers are
    futile against web application hacking. Check your website for vulnerabilities
    to SQL injection, Cross site scripting and other web attacks before hackers do!
    Download Trial at:

    http://www.securityfocus.com/sponsor/pen-test_050831
    -------------------------------------------------------------------------------


  • Next message: Jarmon, Don R: "RE: Vulnerability assessment for small business"

    Relevant Pages

    • DEF CON 14 is now in effect! The Call for Papers is open.
      ... The Call for Papers is open. ... DEF CON 14 will be August 4-6 at the Riviera Hotel & Casino in Las Vegas. ... Audit your website security with Acunetix Web Vulnerability Scanner: ... Cross site scripting and other web attacks before hackers do! ...
      (Pen-Test)
    • Re: Good overview paper of cryptanalysis techniques
      ... references to papers. ... >data using openssl and Java crypto libraries using standard techniques ... the possible attacks when the attacker has ... How does increased knowledge of the plaintext increase the ...
      (comp.security.misc)
    • Re: ANCIENT EGYPT- GOD=G_uv
      ... It contains TWO of my papers, ... I guess the "scientific Proof of God" is officially ... SCIENTIFIC PROOF OF GOD WEBSITE ...
      (sci.physics.relativity)
    • Re: Ancient history [was Re: Public disclosure ...]
      ... I remember reading some rather amusing papers ... >about the Air Force and MITRE ''tiger team'' and their attacks ... ever seeing any discussion, say, of the security relevance of a ... to exploit return-into-libc, double-free, format-string vulnerabilities, etc. ...
      (sci.crypt)
    • Re: Olympus E-400 released....
      ... That's a *very* bad trait to have if one expects their papers to be ... I stopped reading your attacks because they serve no useful purpose. ... as in the David Taylor exchange in this thread. ...
      (rec.photo.digital)