Man-in-the-middle attack is an access attack but it can be used to modify data.

  • IP spoofing

    IP spoofing: Making data look as if it came from a trusted hosted when it actually didn’t.

    Link to original
  • DNS spoofing

    DNS spoofing: Redirecting a user to a fake website rather than the real one they intended to visit.

    Link to original
  • HTTPS spoofing

    HTTPS spoofing: Trying to make a victim believe they are visiting a trusted website.

    Link to original
  • ARP spoofing

    ARP spoofing: With ARP poisoning, an attacker sends ARP messages onto a local area network, this can be used to trick devices to connect to different devices.

    Link to original
  • SSL hijacking

    SSL hijacking: Attacker forges SSL handshake and intercepts information between victim and target. Typically they try to downgrade the connection.

    Link to original
  • Email hijacking

    Email hijacking: Hacker compromises and gains access to a victim’s email account.

    Link to original
  • Wi-Fi eavesdropping

    Wi-Fi eavesdropping: Setting up Wi-Fi networks with purpose of redirecting traffic through them.

    Link to original
  • Session hijacking

    Session hijacking: Stealing browser cookies or data that authenticates a user with a website.

    Link to original