Ettercap is a great spoofing tool that we have used quite a bit in this book, and again, we're going to whip it out. We need to spoof the DNS service and get it directed to our Kali box. Ettercap comes with a plugin just for this. On this attack, since our Kali box is local to the victim network, we can use the GUI version. You'll find this under Sniffing & Spoofing | ettercap-graphical. The procedure goes as follows:
- First, we need to set up our DNS A records that we will use when spoofing. If this is the first time you have spoofed a DNS, you will need to make a new file with your favorite text editor. Add the following A records to the file. By wildcarding the records (*.), we should be good, as follows:
*.microsoft.com ...