DocumentCode
1778824
Title
Design of Win Pcap Based ARP Spoofing Defense System
Author
Mingji Yang ; Yizhe Wang ; Hui Ding
Author_Institution
Higher Educ. Key Lab. for Meas. & Control Technol. & Instrumentations of Heilongjiang, Harbin Univ. of Sci. & Technol., Harbin, China
fYear
2014
fDate
18-20 Sept. 2014
Firstpage
221
Lastpage
225
Abstract
This paper focuses on ARP attacks in switched networks, from ARP protocol perspective, analyses the principle of ARP attacks and the exceptional interrupt occurs they cause when the terminal users access the servers. To quickly and effectively detect ARP spoofing, this paper proposes a WinP cap based detection system of ARP spoofing. Using Win Pcap driver development monitoring software, implements ARP packets capture and analysis in a switched network inspection system. This method does not require a network host to do anything in response, comparing to the other methods, it can reduce the impact of network communication during inspection, and can detect the ARP Spoofing quickly and effectively in switched network.
Keywords
cryptographic protocols; inspection; switched networks; ARP attacks; ARP protocol; ARP spoofing defense system; WinPcap based detection system; WinPcap driver development monitoring software; switched network inspection system; Computers; Hardware; IP networks; Media Access Protocol; Monitoring; Switches; ARP Spoofing; WinPcap; cyber security;
fLanguage
English
Publisher
ieee
Conference_Titel
Instrumentation and Measurement, Computer, Communication and Control (IMCCC), 2014 Fourth International Conference on
Conference_Location
Harbin
Print_ISBN
978-1-4799-6574-8
Type
conf
DOI
10.1109/IMCCC.2014.53
Filename
6995023
Link To Document