Nmap Development mailing list archives

[Patch] Service Fingerprints in XML


From: Brandon Enright <bmenrigh () ucsd edu>
Date: Tue, 18 Apr 2006 05:53:32 +0000

Nmap Hackers,

I find the service fingerprint submission information that Nmap
sometimes spits out to be very useful in finding back-door services on
compromised hosts.  Unfortunately this information isn't available in
the XML output.  Similar to Joshua Abraham's patch, this patch adds the
service fingerprint information to the XML output whenever the
fingerprints goes to STDOUT.  The information is added as an attribute
called servicefp to the service element.

Note: the DTD patch applies to the DTD on the web, *not* the DTD that
comes with 4.01.  Also, the DTD patch fixes the missing osfingerprint
element which should be there regardless of the rest of this patch.

Feedback is wanted.

Brandon

(This is a slightly tweaked re-submit from a few months ago.)

-- 
Brandon Enright
Network Security Analyst
UCSD ACS/Network Operations
bmenrigh () ucsd edu
2C3C 8D3E B639 742C 9273 77F6 A9A1 8FCC 0B25 F782

Attachment: nmap.dtd.patch
Description:

Attachment: output.cc.patch
Description:

Attachment: output.h.patch
Description:



_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev

Current thread: