| |
| | ARP and ICMP redirection games |
 | | While other means of spoofing, such as IP blind spoofing, are more general and powerful, in terms of who can use them, they require quite a lot of (guess)work and may be hard to implement. |
 | | While ARP spoofing is only possible on a local network, it may be a serious concern as a way to extend an already existing security breach. |
 | | If it works (I'm not sure it always will, router's ARP implementation may be tougher to fool, and since I don't want to try it on real routers, I don't know, but there's no simple reason why not) you can easily impersonate any machine on the local network to the rest of the world. |
| insecure.org /sploits/arp.games.html (2883 words) |
|