Penetration Testing mailing list archives

Re: nmap


From: "Michael Kitange" <michaelkitange () gmail com>
Date: Tue, 5 Aug 2008 09:26:58 +0300

i am using linksys wireless network. it appears that i can't scan any
host. i used to use another isp but it just got too expensive. any
idea how i can bypass the filter on linksys?

On 7/30/08, jdm <jdmancuso () gmail com> wrote:
Hello,

FWIW my first thought is that the host(s) are using LaBrea -- do your
scans take a long time to complete?  I know that Nessus has a plugin
to scan for LaBrea tarpitted hosts, it may be worth looking into:
http://www.nessus.org/plugins/index.php?view=single&id=10796

Other than that, sounds like the site may be filtering traffic via a
firewall or proxy; this is a common practice.  Are you running any
kind of firewall and IDS evasion measures?  Try using the --ttl, -f,
-T, and --scan-delay options.

HTH,
jdm

On Tue, Jul 29, 2008 at 2:31 PM, Michael Kitange
<michaelkitange () gmail com> wrote:

hi,
i tried to nmap a site and it said that the pings are blocked and i
had to use the '-PN' switch. well the result which i got was that all
the posts were open. though if i telnet to those posts, they appear to
be closed.
can that be done? fooling that all ports are open on the server if it
can be, then how?

------------------------------------------------------------------------
This list is sponsored by: Cenzic

Top 5 Common Mistakes in
Securing Web Applications
Get 45 Min Video and PPT Slides

www.cenzic.com/landing/securityfocus/hackinar
------------------------------------------------------------------------



-- 
Sent from Gmail for mobile | mobile.google.com

------------------------------------------------------------------------
This list is sponsored by: Cenzic

Top 5 Common Mistakes in 
Securing Web Applications
Get 45 Min Video and PPT Slides

www.cenzic.com/landing/securityfocus/hackinar
------------------------------------------------------------------------


Current thread: