finds.dev← search

// the find

davidbombal/scapy

★ 336 · Python · MIT · updated May 2022

A set of standalone Python scripts, one per attack technique, aimed at Cisco-style network protocols: DHCP exhaustion, DTP trunk negotiation, VLAN hopping, STP root takeover, and EIGRP and BGP route injection and neighbor resets. It is for people studying layer 2 and routing-protocol weaknesses in a lab, not for running against networks you do not own.

- Each technique lives in its own file with a name that says what it does, such as dtp-form-a-trunk.py or eigrp-one-fake-neighbor.py, so you can read one protocol without working through a framework.

- The set covers layer 2 (DHCP, DTP, VLAN hopping, STP) and routing (EIGRP, BGP) together, which makes it easier to see how similar trust assumptions fail across protocols.

- The basic and more-complex DHCP variants and the one-neighbor and many-neighbor EIGRP pair give a minimal-to-fuller progression that suits a teaching sequence.

- The last push was May 2022, and the visible listing has no README, requirements file, or tests. Nothing says which Scapy version is expected, how to run the scripts, or whether they still behave on current Python and current IOS.

- The repo is named scapy, but the listing has none of the library's source. These are scripts that depend on it, so the name misleads anyone looking for Scapy itself.

- The listing shows no lab-only warning or ownership requirement. Scripts that send spoofed DHCP, DTP, STP, and routing-protocol packets can take down a real network, so a README stating the scope is the minimum this repo needs.

View on GitHub →

// want more like this?

We dig through GitHub every week and send a few repos picked for what you actually care about — each with an honest take like this one.

Get finds in your inbox → Search again →