Penetration Testing mailing list archives

Re: Most important UDP ports?


From: Pete Herzog <lists () isecom org>
Date: Thu, 01 May 2008 20:02:09 +0200

Hi,

You only have time constraints if you test UDP ports looking for ICMP replies. However if you actually look for UDP services with UDP protocols your tests can fly! I suggest you look into Unicornscan and other tools which will test UDP ports with known UDP protocols on the standard ports where you may find them. This doesn't help in finding "unknown" services or those on strange ports but neither will scanning only known service ports looking for ICMP replies. On the other hand, if the servers are configured correctly and don't respond with ICMP then at least you can still find active services.

Sincerely,
-pete.


Florencio Cano wrote:
Hi,
I have read some discussions that explain why UDP scanning is so slow.
Now, I want to scan a network but I have time constrains. Which, for
example, 10 UDP ports will you scan if you had a limited quantity of
time to perform the scan?

------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------




------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------


Current thread: