This week I gave a quick intro of pretender, a tool that has the powers of mitm6 + the spoofing capabilities of Responder. Specifically, I demonstrated how to selectively spoof a hostname that systems are querying but for which no DNS record exists. I’m definitely going to play with this more and use it on future assessments. There’s a great overview of the tool with some examples and videos here.
Do you use pretender on assessments?
Questions/comments/concerns for me?
Thanks,
-Brian










