5-Local Network Assessment
5-Local Network Assessment
5-Local Network Assessment
• Attack the systems within the VLAN at Layer 2 (e.g., ARP cache
poisoning and MITM), and then Layer 3 (e.g., port scanning and
testing of exposed services)
Local IP Protocols
Local IP Protocols
• Any set of protocols for network discovery and configuration services
over IPv4 and IPv6
• Examples
• Dynamic Host Configuration Protocol (DHCP)
• Preboot Execution Environment (PXE)
• Local name resolution protocols (LLMNR, NBT-NS, and mDNS)
• Web Proxy Auto-Discovery (WPAD)
• Internal routing protocols (e.g., HSRP, VRRP, EIGRP, and OSPF)
• IPv6 network discovery protocols
DHCP
• DHCP vulnerabilities
• Rogue DHCP server
Rogue DHCP server