Hacking Layer 2: Fun with Ethernet Switches by Sean Convery, Cisco Systems, 2025
- MAC Spoofing
- Double Tagging
- MAC Flooding
- 802.1q decapsulation VLAN Hopping
- ARP Spoofing
- SSH/SSL Intercept
- Spanning Tree Attack
- VQP Attack
How do you prevent these attacks?
📌 Always use a dedicated VLAN ID for all trunk ports
📌 Disable unused ports and put them in an unused VLAN
📌 Be paranoid he he. Do not use VLAN 1 for anything
📌 Set all user ports to non-trunking (DTP off)
#cisco
Post #7597
2.86K


- 🔥 2
- 👍 1