Ethernet sniff.


 
Thread Tools Search this Thread
Special Forums Cybersecurity Ethernet sniff.
# 1  
Old 12-16-2005
Ethernet sniff.

I suspect that someone is using a sniffer on my Ethernet connection,

OS X 10.3.9, DSL,

ok, I'm in terminal using the "ifconfig" command >

flags=8049<UP,LOOPBACK,RUNNING,MULTICAST>mtu 16384

right, it's not in "promiscuous mode", but i think it's Trojaned, can anyone point me in the direction of a tool to directly test the network interface to see if it's in promisc mode.
Thank you. Happy Christmas
# 2  
Old 12-19-2005
I don't know anything about OS X - it's Linux-like so it should allow you to run intrusion detection - i.e., snort.

If your system has one thing changed, you can bet there are other problems - snort is a great tool.

http://homepage.mac.com/duling/halfd...ort-Howto.html
Login or Register to Ask a Question

Previous Thread | Next Thread

10 More Discussions You Might Find Interesting

1. AIX

vio server ethernet to vio client ethernet(concepts confusing)

Hi In the vio server when I do # lsattr -El hdisk*, I get a PVID. The same PVID is also seen when I put the lspv command on the vio client partition. This way Im able to confirm the lun using the PVID. Similarly how does the vio client partition gets the virtual ethernet scsi client adapter... (1 Reply)
Discussion started by: newtoaixos
1 Replies

2. Solaris

ethernet

my solris box network is unreachable how to solve this ipaddress assiagning and entry in vi /etc/host how to solve network is unreachable (2 Replies)
Discussion started by: tirupathi
2 Replies

3. Solaris

Ethernet Port Name

I have a new Sun 440 and I am trying to configure it. Non of the Ethernet ports are enabled; when I issue "ifconfig -a" it returns nothing. Is there a way to know the available port name (e.g. ce, bge, etc.) by running a command or so ? (4 Replies)
Discussion started by: StarSol
4 Replies

4. AIX

ethernet down

Hello everyone I have a problem with one server, has Aix 5.3 in the errpt has this message IDENTIFIER TIMESTAMP T C RESOURCE_NAME DESCRIPTION F3931284 0105133009 I H ent0 ETHERNET NETWORK RECOVERY MODE EC0BCCD4 0105133009 T H ent0 ETHERNET DOWN F3931284 ... (4 Replies)
Discussion started by: lo-lp-kl
4 Replies

5. UNIX for Dummies Questions & Answers

tcpdump to sniff password

Hi, How can i use tcpdump to sniff the password of a web page from my unix remote terminal? (1 Reply)
Discussion started by: greg15
1 Replies

6. Programming

sniff /dev/tty

hello all, Being root, I would like to log user activity (also multiple root activity), i don't really like history file based logging, lets assume that users have access to their .profile. I would like to write a monitoring daemon in C that would capture /dev/ttys, so I need to do a... (0 Replies)
Discussion started by: wayward
0 Replies

7. Solaris

Quad Ethernet

I have a Quad Ethernet card in a 220R. 2 ports activated. Each has its own hostname file and both hostnames are in the hosts file. I want both ports to have the same IP address so we can use the 2nd port in case we lose communication on the port. On bootup, the box gives me: SIOCSLIFFLAGS:... (5 Replies)
Discussion started by: hshapiro
5 Replies

8. UNIX for Advanced & Expert Users

Virtual Ethernet

I understand that one should setup virtual ethernet adapters in the lpars which is the best way for various lpars to communicate with each other - Does anyone have info on this or can point me to a doc that explains how to set this up? (1 Reply)
Discussion started by: capeme
1 Replies

9. UNIX for Dummies Questions & Answers

Ethernet

We are trying to Establish Network using Linux.Now we are facing the problem in configring Ethernet.In out network we are giving eth0 in server and activating it at the boot time,so it is activating as it is but when we define the Ethernet of node on server and allowing it to activate at boot time... (5 Replies)
Discussion started by: at_renai2001
5 Replies

10. Cybersecurity

any comments using l0pht anti sniff??

I'm looking for an anti sniff or a sniffer detection tool......the l0pht anti sniff is the fistone in apperas on a google search... (2 Replies)
Discussion started by: comadreja
2 Replies
Login or Register to Ask a Question