Abstract
This article discusses an anti-sniffer based on a new detection technique. The proposed technique uses mainly ARP cache poisoning attack to detect sniffing hosts in an Ethernet network, and is implemented in a tool called SupCom anti- sniffer. Four anti-sniffers — PMD, Promi- Scan, L0pht AntiSniff, and SupCom anti- sniffer — are tested and the evaluation results show that SupCom anti-sniffer succeeded in detecting more sniffing hosts than the other anti-sniffers.
| Original language | English |
|---|---|
| Pages (from-to) | 23-36 |
| Number of pages | 14 |
| Journal | Information Systems Security |
| Volume | 13 |
| Issue number | 6 |
| DOIs | |
| Publication status | Published - 2005 |
| Externally published | Yes |
ASJC Scopus subject areas
- Software
- Computer Science Applications
- Information Systems and Management