Decoys
As we have noticed, whenever a penetration tester performs a scan on a target device or network, the attacker’s IP address and MAC address would be recorded on the victim’s machine. This would make it quite easy to identify the attacker’s machine on the network. One of the techniques to camouflage yourself when scanning is using decoys, to throw off the victim when they are trying to identify the actual attacker machine.
Nmap, the king of network scanners, comes in to help us again. Nmap has the ability to insert multiple source IP addresses into the probes it sends to the target device. To elaborate further, let's imagine you are sending a bogus letter to someone, however, within the sender's address, you insert your address and a ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access