Call Today

+1 440-322-ILER(4537)

}
Hours

Mon – Fri, 9am to 5pm

Tech Blog

your go-to resource for all things tech! Stay updated on the latest trends, industry insights, and expert tips to navigate the ever-evolving world of technology.

Cyber Security Awareness Month – Spoofing

by | Oct 30, 2018

Spoofing is a fraudulent practice in which a person or malicious program is disguised as a known computer/tablet/phone by cloning device information. The purpose of these attacks is to trick the recipient into allowing the transfer of data or secure transactions. The most common spoofing attacks include IP Spoofing, ARP Spoofing, and DNS Spoofing.

IP Spoofing occurs when an attacker mimics a legitimate IP address to access network information as a trusted device. Replicating the IP address causes systems to believe the source is reputable and thus allow transactions to be permitted to the spoofed device.

ARP Spoofing, or “address resolution protocol,” happens when the attacker hides quietly in the network, attempting to redirect network traffic to the attacker’s device instead of the intended device.  The assailant then intercepts, modifies, or even stops information to and from other computers and routers. ARP can be used for DoS (denial-of-service), hijacking and other types of attacks.

DNS Spoofing is when the attacker modifies DNS (domain name system) data so that it redirects network traffic to fake servers which are either made to look like legitimate servers. These fraudulent servers are then used to capture login credentials, or they are infected with malware and can be used to spread ransomware, viruses and worms throughout your system.

Here are practices that should be implemented to properly avoid these tricky spoofing attacks:

  • Protect your network to prevent unauthorized access for both wired and wireless computers. Secure all locations where servers, switches, and routers are located.
  • Disconnect unused network jacks from switches, especially in conference rooms and other locations where guests may be allowed.
  • Network Monitoring that includes packet filtering should be utilized so inconsistencies can be found, and alerts sent immediately.
  • Use internal servers to handle DNS resolution.

Backup Recovery Testing: Why Every Business Should Test Before Disaster Strikes

Backup recovery testing helps businesses ensure backups actually work before disaster strikes. Learn why testing your recovery plan is critical for minimizing downtime and protecting your business.

Cyber Security Awareness Month - Spoofing

Business Compliance Assessment: 4 Costly Compliance Gaps That Could Be Costing Your Business Thousands

A business compliance assessment helps uncover hidden security and compliance gaps before they result in costly fines, failed audits, cyber incidents, or lost business. Learn the four biggest risks and how to address them.

Cyber Security Awareness Month - Spoofing

Hidden Cybersecurity Risks: 3 Threats Lurking Beneath the Surface of Your Business

Hidden cybersecurity risks can put your business at serious risk without warning. Learn the three biggest threats hiding beneath the surface and how to protect your business before they become costly breaches.

Cyber Security Awareness Month - Spoofing

Why Every Business Needs a Mid-Year IT Analysis Before Problems Cost You

A Mid-Year IT Analysis helps businesses identify security risks, outdated permissions, backup issues, and technology gaps before they become costly problems. Learn the four areas every business should review this summer.

Cyber Security Awareness Month - Spoofing

6 IT Provider Questions Smart Companies Should Ask Every Quarter

Are you asking your IT provider the right questions? Learn the top IT provider questions every business should ask quarterly to improve cybersecurity, reduce downtime, and plan smarter technology decisions.