ARP and DNS Spoofing Detection with Attacker IP Capturing

T. Srinivasarao, N. Leelavathy, S. Kailash Chandra Sri Satya Dev, I. Om Ganesh, Pothapu Aditya, praveen sai krishna · 2024

DNS spoofing attacks are a growing threat to network security, allowing attackers to manipulate DNS responses and redirect users to malicious websites. Many existing methods for detecting these attacks have limitations, that reduce their effectiveness. This proposed method aims to overcome these limitations by designing and implementing an improved ARP and DNS spoofing detection with attacker IP tracing. The proposed method primary objective includes real-time monitoring of ARP responses to detect abnormalities indicating of ARP spoofing attempts. This is examined by checking source IP, MAC addresses for discrepancies. Similarly, the solution thoroughly examines DNS responses, instantaneously warning the administrators of anomalies between requested and received IP addresses, indicating probable DNS spoofing incidents. Along with these detection capabilities, the project tracks attacker IP addresses, allowing administrators to trace and examine suspicious spoofing attempts. In summary,”ARP and DNS Spoofing Detection with Attacker IP Capturing” defines a significant improvement in network security, providing an effective protection against sophisticated spoofing attacks. The result of this research helps network administrators and organizations to secure their networks by detecting these ARP and DNS spoofing attacks by tracing the attacker’s IP.

Read the paper · More papers on PaperTik