Detection and prevention of man-in-the-middle attack

Man-in-the-Middle (MitM) attack is a significant cybersecurity threat that involves an attacker intercepting communication between two parties to eavesdrop, manipulate, or inject malicious code into the communication. MitM attacks can lead to data theft, session hijacking, and other serious conseque...

Full description

Saved in:
Bibliographic Details
Main Author: Kok, Donovan Zheng Jie
Other Authors: Chan Chee Keong
Format: Final Year Project
Language:English
Published: Nanyang Technological University 2023
Subjects:
Online Access:https://hdl.handle.net/10356/167188
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Nanyang Technological University
Language: English
Description
Summary:Man-in-the-Middle (MitM) attack is a significant cybersecurity threat that involves an attacker intercepting communication between two parties to eavesdrop, manipulate, or inject malicious code into the communication. MitM attacks can lead to data theft, session hijacking, and other serious consequences. In this paper, we include the view of understanding the term MitM attack and explore various attacking such as Address Resolution Protocol (ARP) Spoofing, Domain Name System (DNS) Spoofing and Internet Protocol (IP) Spoofing. Thereafter, we will discuss the detection of MitM attack, including the use of network traffic analysis in a detection software that was built with regards to this study. Finally, we will then elaborate in depth about the prevention method employed in this paper, called the Dynamic ARP Inspection (DAI).