<?xml version="1.0" encoding="utf-8"?>
<oembed>
  <version>1</version>
  <type>rich</type>
  <provider_name>Libsyn</provider_name>
  <provider_url>https://www.libsyn.com</provider_url>
  <height>90</height>
  <width>600</width>
  <title>7MS #700: Pretender</title>
  <description>Today is episode 700 of the 7MinSec podcast! Oh my gosh. My mom didn’t think we could do it, but we did. Instead of a big blowout with huge news, giveaways and special guests, today is a pretty standard issue episode with a (nearly) 7-minute run time! The topic of today’s episode is Pretender (which you can download&amp;amp;nbsp;here&amp;amp;nbsp;and read a lot more about&amp;amp;nbsp;here).&amp;amp;nbsp; The tool authors explain the motivation behind the tool: “We designed pretender with the single purpose to obtain machine-in-the-middle positions combining the techniques of&amp;amp;nbsp;mitm6&amp;amp;nbsp;and&amp;amp;nbsp;only&amp;amp;nbsp;the name resolution spoofing portion of&amp;amp;nbsp;Responder.” On a recent pentest, I used Pretender’s “dry run” mode to find a hostname (that didn’t exist) that a ton of machines were querying for, and poisoned requests&amp;amp;nbsp;just for that host.&amp;amp;nbsp; This type of targeted poisoning snagged me some helpful hashes that I was able to crack/relay, all while minimizing the risk of broader network disruption! </description>
  <author_name>7 Minute Security</author_name>
  <author_url>https://7MinSec.com</author_url>
  <html>&lt;iframe title="Libsyn Player" style="border: none" src="//html5-player.libsyn.com/embed/episode/id/38950270/height/90/theme/custom/thumbnail/yes/direction/forward/render-playlist/no/custom-color/88AA3C/" height="90" width="600" scrolling="no"  allowfullscreen webkitallowfullscreen mozallowfullscreen oallowfullscreen msallowfullscreen&gt;&lt;/iframe&gt;</html>
  <thumbnail_url>https://assets.libsyn.com/secure/item/38950270</thumbnail_url>
</oembed>
