Design of Win Pcap Based ARP Spoofing Defense System

Mingji Yang, Yizhe Wang, Hui Jie Ding · 2014

This paper focuses on ARP attacks in switched networks, from ARP protocol perspective, analyses the principle of ARP attacks and the exceptional interrupt occurs they cause when the terminal users access the servers. To quickly and effectively detect ARP spoofing, this paper proposes a WinP cap based detection system of ARP spoofing. Using Win Pcap driver development monitoring software, implements ARP packets capture and analysis in a switched network inspection system. This method does not require a network host to do anything in response, comparing to the other methods, it can reduce the impact of network communication during inspection, and can detect the ARP Spoofing quickly and effectively in switched network.

Read the paper · More papers on PaperTik