Nmap Development mailing list archives

Re: smbv2-dos.nse


From: Kris Katterjohn <katterjohn () gmail com>
Date: Sat, 12 Sep 2009 11:37:27 -0500

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 09/12/2009 11:22 AM, Ron wrote:
Hey Kris

I totally see what you mean, and I do agree.

That being said, I do worry about people accidentally crashing stuff
using my script. I know the first thing I did was run --script=all
against a test server when I discovered that scripting exists, and
that's fine (crashing test servers is fun :) ). But not everybody is
that smart.


I guess it's just the fact that we haven't had a dos or exploit script in the
(I think) 3 years that NSE has been part of Nmap proper.  If we had some
(especially in the beginning) then there might be more awareness to the
potential dangers of using "all".  Or maybe not, I don't know :)

When it comes down to it, I can go either way on the issue.

Ron


Cheers,
Kris Katterjohn

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iQIcBAEBAgAGBQJKq85GAAoJEEQxgFs5kUfuC4gQAK6EpLIbLuY1ygD3277AlQh4
MH/gOK3VBjvnNjO6LLNyVv9o93eHhde4JKN+vKsQPBK/1xaedPK8fDnLByH2wlWS
bzRPywkqfNQMG3wyrCCmXHZ+xqn42UnO9Et5Rzb6LbkvwgxftciBTdw4nJlKsxB7
d/co91/pNb7KNdKiIUfeH793wBZxwwsDvFBofHTu/poOtfArw+qsCa3jnkgNsbdj
WlsaLqSNKFtKrMJnc0AKDOvBCbvYDh2h3dq0nuOmzciZw4suUEtUDqxSXHilKh89
P4MTpoydVekjoebIvSqWh6fFcWqXccOglmmjlo+K9PYW8YQc18zOyLWA+KuIeM2W
PYl18WiuVCWgWT3F0yNn0JRvJlBNGrg8v3mlVyixwYqTmZchyCaAFfHdwq/8b6Aq
RAS6OI3LVy+EyXu3JQYfP6BW5hxpzR265ja0vopYX5CIM+4FdFGHTSOAh+nQIwWf
UdORVs8lpDtMaZiszeJA9h3gM78JuUYe38LztERZ3fwi1O/JW0mctP/nvxsbJ8nU
woxMGLy45K70ZQDNrZnBkEGUgrBA+QTlEm/LaG27YKUXissWvIHRWG0Ob5jfrFQW
QJx593k7KFCyRdOzzcW+Cw0nS7w1nCMENeW6kiXN1wvj8MJSbCgYyAENqlvaango
btsC4Ji67SvrlcesutXS
=hjWQ
-----END PGP SIGNATURE-----

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://SecLists.Org


Current thread: