PDA

View Full Version : WLAN ARP and / or DNS spoofing without evil twin



Amadeus
2015-05-07, 09:31
Hi there
I am sure this sounds like a silly question but
I am wondering why it is not possible to perform an ARP or DNS spoofing attack over the wlan without setting up an evil twin.
If I know the password for the target network I should be able to receive incoming arp and dns requests. If its possible to inject packages on
the wlan, it should be possible to forge arp and dns responses and send it back in the air - or am I missing something?

Best regards

rastamouse
2015-05-07, 13:05
If you know the WiFi password, you could just associate and join the network and carry out any network based attack as you would on a LAN.

Amadeus
2015-05-07, 17:02
Hmm I don't understand. How can I associate with a network while the device is in monitor mode?

Amadeus
2015-05-07, 17:55
My bad - I just realized, that monitor mode is not equal to the promiscuous mode ;-)