Traffic Capture (part 4) DNS

Video Activity

This video discusses Domain Name Service (DNS). Domain Name Service is a tool that is used to translate domain names (e.g. gmail.com) into its IP address. Domain Name Service tells the host where to send traffic when called by its domain name. This video offers participants step by step instructions on using Domain Name Service (DNS) to translate d...

Join over 3 million cybersecurity professionals advancing their career
Sign up with
Required fields are marked with an *
or

Already have an account? Sign In »

Time
14 hours 26 minutes
Difficulty
Advanced
Video Description

This video discusses Domain Name Service (DNS). Domain Name Service is a tool that is used to translate domain names (e.g. gmail.com) into its IP address. Domain Name Service tells the host where to send traffic when called by its domain name. This video offers participants step by step instructions on using Domain Name Service (DNS) to translate domain names into IP addresses.

Video Transcription
00:04
Now we're gonna take a look at their main aim Service's or D and s.
00:08
So you refuse what translates
00:11
W TV that gmail dot com into an i P address. Whereas AARP is gonna take an I P address and make it into a Mac address. This is one level higher takes it
00:22
usually remember Herbal threw me a name and turns it into the I P address.
00:28
And again, that's gonna tell Host We're just in the traffic when it's cold by the domain name, so it can also be spooked.
00:36
So again, there's no requirement that you tell the truth.
00:41
So when I do do you know s I say I want to browse to w w dot gmail dot com What's the I P address?
00:49
Where asked my little Dina server.
00:53
It may or may not know gmail dot com. It's not us. Another do you know, server
00:58
someone eventually somewhere will know what the I. P Address is, which will call back to this local Deanna server, which will tell Callie.
01:07
And then Kelly will be able to send its information to the right place to get to w w dot gmail dot com
01:14
So again. We can cash boys in this,
01:17
but we can use it to call d. N s Booth to do so.
01:19
That's exactly what we're gonna do. We're gonna have to do arts moving between the gateway and our target. So when it tries to call out for D. N s, it will instead
01:32
to ask us
01:34
and we will reply with whatever we want.
01:41
No, I'm going to do art spoofing with this time. I want
01:46
the gateway,
01:48
which is 0.1 in my case.
01:52
And you want to say I'm gonna make you bunch of that target. So this time, instead of telling it that I am X p and vice versa,
02:00
I mean, sure, I'm the gateway.
02:01
We will restart my to AARP spoofs one on each side
02:06
again. This time I want to be the gateway.
02:14
All right, But first I want to create a file called Post Op Sext
02:20
and
02:22
I'll say it. Every debate at gmail dot com is 172
02:27
that are want to seven. Rather don't zero
02:31
thought zero
02:34
that one and was actually backwards.
02:38
Syntax is hard. May do it anyways want you all to stay. Local host is w w dot gmail dot com
02:47
So it has somewhere to go. Thio, I'll start up the Apaches, Your
02:53
there. Currently, there's nothing mayorship, the default
03:02
loops.
03:08
It works. Uh, nothing really interesting there. Of course, we'll get it.
03:14
Keep out of that. Comet should look like Gmail.
03:16
Good. I'm not logged in. That would have been embarrassing. I would have to redo the video. Um,
03:23
so school's back up. So I've got my host stop text. So I do want you to Tool called Dean s Booth.
03:31
And again we do dash on eat zero for the Inter vase. That's a T, not nine.
03:39
And we wanted to f for the file, and it's called her start perched.
03:47
I was going to
03:51
listen for in a
03:53
incoming Deanna's requests
03:55
and respond to them accordingly, saying that we are the vita vita gmail dot com.
04:03
So let's pop back over
04:06
to want you
04:10
and Shea. We want todo
04:13
Give me that. You're ill dot com.
04:16
Well, that's certainly not Gmail. That's in fact, us. So that is.
04:21
In fact, they're Apache. Show over so we could change this around actually look like Gmail. We look at the social engineer tool kit a bit later on, we'll actually see that, or we could hopefully get people to enter their credentials into a site that we own,
04:38
thinking that it's the legitimate side.
04:40
And Dina smooching isn't the only way they're get someone to go to our website. But it certainly helps.
04:46
So answer us example. So we see that it actually saw the request
04:51
from
04:54
80 which is indeed are a bunch of system. So it responded accordingly and said, We're gmail dot com
05:00
and us
05:02
our once your system did serve to our page.
Up Next