Home page logo
/

bugtraq logo Bugtraq mailing list archives

Re: (How) Does AntiSniff do what is claimed?
From: tschroed () ACM ORG (Trevor Schroeder)
Date: Tue, 27 Jul 1999 06:35:34 -0500


On Sun, 25 Jul 1999, Jon Marler wrote:

All you would need to do to prevent detection is cut the send pair on your
Ethernet connection.  That would make it completely passive.  You could
even do it as simple as a cable with only 1 pair.

That's what I thought initially.  As someone was kind enough to point out,
the Tx is also carrying your linkbeat.  Without it, the hub's not going to
be sending you traffic.  That's why I had to go with AUI, you have the
opportunity to cut the data while leaving the control signals intact.
..........................................................................
: "I knew it was going to cost me my head and also my swivel chair, but  :
: I thought: What the hell-better men than I have risked their heads and :
: their swivel chairs for truth and justice." -- James P. Cannon, 1959   :
:........... http://www.zweknu.org/ for PGP key and more ................:


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]