
ARP Cache Poisoning-Based MiM and DoS Attacks ◾ 37
described in Lab 2.1. In addition, we assume that Host C is
the malicious host and intends to sniff the traffic exchanged
between Host A and Host B, using a MiM attack. To per-
form this sniffing attack, Host C needs to corrupt the ARP
caches of Hosts A and B by inserting fake entries in their
ARP caches.
The experiment consists of the following steps:
Step 1: Assign static IP addresses to the network’s hosts.
Step 2: Enable IP routing at Host C.
Step 3: View the ARP caches of Hosts A and B.
Step 4: Build two malicious ARP request packets.
Step 5: Test the MiM attack.
Step 6: Sniff and analyze the tra ...