Penetration Testing mailing list archives
pre-scanning for vulnerability scans?
From: offset <offset () core svcroot net>
Date: Mon, 9 Jan 2006 07:47:53 +0200
Greetings, My goal is to determine ways to speed up network vulnerability scans on a number of /20 networks (but not at the expense of accuracy) Given the goal above, anyone have experience testing accuracy and speed for host detection and full port scans using various network scanners (ie, unicorn versus nmap)? Do you find that bandwidth is the limiting factor to negate differences between scanners? Assuming source is typical broadband (dsl, cable) around 1Mbps upload speed. Looking to find most efficient methods of the following, assume stealth is not the goal, but accuracy is 1. host up detection (detecting ports (ie, 80, 443)), mark for followup later (queue for full scan) 2. full port SYN scan on detected hosts (TCP only) 3. vulnerability analysis based on host/port information Regards ------------------------------------------------------------------------------ Audit your website security with Acunetix Web Vulnerability Scanner: Hackers are concentrating their efforts on attacking applications on your website. Up to 75% of cyber attacks are launched on shopping carts, forms, login pages, dynamic content etc. Firewalls, SSL and locked-down servers are futile against web application hacking. Check your website for vulnerabilities to SQL injection, Cross site scripting and other web attacks before hackers do! Download Trial at: http://www.securityfocus.com/sponsor/pen-test_050831 -------------------------------------------------------------------------------
Current thread:
- pre-scanning for vulnerability scans? offset (Jan 09)
- Re: pre-scanning for vulnerability scans? robert (Jan 09)
- RE: pre-scanning for vulnerability scans? Lyal Collins (Jan 09)
- Re: pre-scanning for vulnerability scans? Ivan Arce (Jan 14)