Responder/LLMNR Poisoning Detection

bundle

#1

####Bundle Details & Download

https://www.extrahop.com/customers/community/bundles/changhwanoh/responderllmnr-poisoning-detection/

####Description

This bundle detects Link-Local Multicast Name Resolution (LLMNR) queries, responses, and exploit attempts made through the Responder tool. Responder captures credentials on a local network by exploiting the LLMNR protocol, which is enabled by default on most Windows machines. This process is known as LLMNR poisoning.