Penetration Testing mailing list archives

pre-scanning for vulnerability scans?


From: offset <offset () core svcroot net>
Date: Mon, 9 Jan 2006 07:47:53 +0200

Greetings,

My goal is to determine ways to speed up network vulnerability scans on a number of /20 networks (but not at the 
expense of accuracy)

Given the goal above, anyone have experience testing accuracy and speed for host detection and full port scans using 
various network scanners (ie, unicorn versus nmap)?

Do you find that bandwidth is the limiting factor to negate differences between scanners?  Assuming source is typical 
broadband (dsl, cable) around 1Mbps upload speed.

Looking to find most efficient methods of the following, assume stealth is not the goal, but accuracy is
1. host up detection (detecting ports (ie, 80, 443)), mark for followup later (queue for full scan)
2. full port SYN scan on detected hosts (TCP only)
3. vulnerability analysis based on host/port information

Regards

------------------------------------------------------------------------------
Audit your website security with Acunetix Web Vulnerability Scanner: 

Hackers are concentrating their efforts on attacking applications on your 
website. Up to 75% of cyber attacks are launched on shopping carts, forms, 
login pages, dynamic content etc. Firewalls, SSL and locked-down servers are 
futile against web application hacking. Check your website for vulnerabilities 
to SQL injection, Cross site scripting and other web attacks before hackers do! 
Download Trial at:

http://www.securityfocus.com/sponsor/pen-test_050831
-------------------------------------------------------------------------------


Current thread: