Does an attacker need to guess or brute-force a password for TCP spoofing?
From my understanding, TCP spoofing can be carried out if the attacker can correctly guess the sequence numbers from the response packets (to mimic the real client). The attacker may even obtain this sequence of numbers via sniffing. Furth… Continue reading Does an attacker need to guess or brute-force a password for TCP spoofing?