From charlesreid1

Layer 3 = Network (IP protocol, packets)

Layer 4 = Transport (TCP protocol, packets)

Conducting Recon

Before carrying out any attacks, conduct recon. This is nmap territory. Here are some things you'll want to know:

  • Number of clients on network
  • Open ports, services running
  • Operating systems
  • Etc.

Layer 3 Attacks

Port Stealing - Man in the Middle/Port Stealing

DHCP Spoofing - Man in the Middle/DHCP Spoofing

NDP Poisoning - Man in the Middle/NDP Poisoning

Layer 4 Attacks

CAM list overflow

DHCP attacks

Rushing attack

Dealing with Encryption

Tools and techniques for dealing with SSL/TLS/other encryption methods

SSLStrip

Tools

Dsniff

SSLStrip

Flags