Ethical Hacking Understanding LLMNR Poisoning & NTLMv2 Capture with Responder

Опубликовано: 05 Июнь 2026
на канале: SecOps Insider
47
0

⚠️ DISCLAIMER:
This video is for educational purposes and authorized penetration testing only. Performing these techniques on networks you do not have explicit, written permission to test is illegal and unethical. The goal of this video is to help security professionals understand and mitigate these vulnerabilities.

In this tutorial, we dive into a classic local network attack vector: LLMNR and NetBIOS Name Service (NBT-NS) poisoning. When a Windows machine fails to resolve a hostname via DNS, it falls back to broadcast protocols to ask other machines on the network for help.

We demonstrate how a security professional can use Responder to listen for these requests and trick the victim into sending their NTLMv2 challenge-response hash.