(Kalyana+Soma).Sundaram
Kishan Gupta
Aneesh Dogra
What happens when you open www.google.com
AGENDA
DNS
Transport Layer Protocols
UDP
TCP
Flags
Flags
Options
TCP
sysctl values
Connection Teardown
Out-of-path Vulnerability in TCP (CVE-2016-5696)
A global system variable
How to hack?
If this number is less than the system limit, some challenge ACKs must have been sent over the connection under test, as responses to the spoofed packets.
SEQUENCE Number Inference
Ack Inference
What if somebody spoofs Syn and send to me?
TCP Attacks
Network + Data Link Layer
Network + Data Link Layer
Q From your system to Access point what part of the packet addresses the access point when you open google.com?
NAT
Can the NAT box see HTTPS Application Level Data?
Recap opening www.google.com
Advanced