Movatterモバイル変換


[0]ホーム

URL:


Jump to content
WikipediaThe Free Encyclopedia
Search

Packet injection

From Wikipedia, the free encyclopedia

Packet injection (also known as forgingpackets or spoofing packets) incomputer networking, is the process of interfering with an establishednetwork connection by means of constructing packets to appear as if they are part of the normal communication stream. Thepacket injection process allows an unknown third party to disrupt or intercept packets from the consenting parties that are communicating, which can lead to degradation or blockage of users' ability to utilize certainnetwork services orprotocols. Packet injection is commonly used inman-in-the-middle attacks anddenial-of-service attacks.

Capabilities

[edit]

By utilizingraw sockets,NDIS function calls, or direct access to anetwork adapterkernel mode driver, arbitrary packets can be constructed and injected into acomputer network. These arbitrary packets can be constructed from any type of packetprotocol (ICMP,TCP,UDP, and others) since there is full control over thepacket header while the packet is being assembled.

General procedure

[edit]

Uses

[edit]

Packet injection has been used for:

Detecting packet injection

[edit]

Through the process of running apacket analyzer orpacket sniffer on bothnetwork service access points trying to establish communication, the results can be compared. If point A has no record of sending certain packets that show up in the log at point B, and vice versa, then the packet log inconsistencies show that those packets have been forged and injected by an intermediaryaccess point. UsuallyTCP resets are sent to bothaccess points to disrupt communication.[2][3][4]

Software

[edit]

See also

[edit]

External links

[edit]

References

[edit]
  1. ^Gu, Qijun; Liu, Peng; Zhu, Sencun; Chu, Chao-Hsien (November 2005)."Defending against packet injection attacks unreliable ad hoc networks"(PDF).GLOBECOM '05. IEEE Global Telecommunications Conference, 2005. Vol. 3. pp. 5 pp.–.doi:10.1109/GLOCOM.2005.1577966.ISBN 0-7803-9414-3.ISSN 1930-529X.S2CID 6631918.
  2. ^ab"Packet Forgery by ISPs: A Report on the Comcast Affair". 28 November 2007.
  3. ^"Detecting packet injection: A guide to observing packet spoofing by ISPs". 27 November 2007.
  4. ^Weaver, Nicolas; Sommer, Robin; Paxson, Vern (September 2009).Detecting forged TCP reset packets(PDF). Proceedings of the Network and Distributed System Security Symposium, NDSS 2009, 8th February - 11th February 2009. San Diego, California, USA.
Retrieved from "https://en.wikipedia.org/w/index.php?title=Packet_injection&oldid=1310463726"
Category:

[8]ページ先頭

©2009-2025 Movatter.jp