Spoofing Attack


Spoofing is an attack technique where the threat actor disguises their identity or impersonates another user or resource.

  • can include any type of attack where the:
    • threat actor disguises their identity
    • or the source of network information is forged to appear legitimate
  • e.g.,
    • social engineering
    • phishing
    • pharming
  • possible to abuse the way a protocol works or how network packets are constructed to inject false or modified data onto a network
    • ARP and DNS services are often vectors for this

Types of Spoofing Attacks