Linux嗅探ettercap

场景

拿到一台C段的Linux服务器,对目标主机进行嗅探

ettercap安装

操作环境

Centos 6

$ sudo yum install -y libtool-ltdl ncurses-devel gtk+-devel gtk2-devel openssl openssl-devel libidn-devel libssl-devel libpcap-devel pcre-devel gnutls-devel pkgconfig ghostscript
$ sudo rpm -Uvh librtmp-2.4-2.20131205.gitdc76f0a.el7.nux.x86_64.rpm
$ sudo rpm -Uvh librtmp-devel-2.4-2.20131205.gitdc76f0a.el7.nux.x86_64.rpm
$ mkdir ~/source
$ cd ~/source
$ wget https://github.com/Ettercap/ettercap/archive/v0.8.2.tar.gz
$ tar zxvf ettercap-0.8.2.tar.gz
$ cd ettercap-0.8.2
$ mkdir build
$ cd build
$ cmake ../
$ make
$ make install

命令

# 指定某个IP进行嗅探
ettercap -i eth0 -Tq -M arp:remote //192.168.15.55//

# 捕获某个IP的数据包

tcpdump -i eth0 host 192.168.15.55 -w 001.pcap

参考

https://www.cnblogs.com/lingerhk/p/4094040.html

http://chadhu.blogspot.com/2017/03/compiling-and-installing-ettercap-0.html

猜你喜欢

转载自www.cnblogs.com/17bdw/p/10415815.html