Penetration Testing mailing list archives

Re: Experiences with company nCircle and their IP360 product


From: Harry Hoffman <hhoffman () ip-solutions net>
Date: Mon, 28 Nov 2005 23:16:27 -0500

One of the biggest things for this is *not* scanning tcp 9100 as it will
print out anything that comes in on that port.

We've got fairly new Lexmark printers that exhibit this behavior so I'm
guessing it's considered "normal" although I've never bothered to
confirm it.

Cheers,
Harry

David M. Zendzian wrote:
One other thing I've seen with nCircle (& a few other scanners), if you 
run internally & have any legacy HP jetdirect printers located on your 
network, you may want to check with nCircle to see if their scans still 
lock up those printers.

Nothing like running a scan and having it lock up all your execs 
printers or the accounting depts printers because the local IT admin 
hasn't upgraded them in the last 5 years (we all upgrade our HP 
jetdirect printers right?? :)


<snip>

------------------------------------------------------------------------------
Audit your website security with Acunetix Web Vulnerability Scanner: 

Hackers are concentrating their efforts on attacking applications on your 
website. Up to 75% of cyber attacks are launched on shopping carts, forms, 
login pages, dynamic content etc. Firewalls, SSL and locked-down servers are 
futile against web application hacking. Check your website for vulnerabilities 
to SQL injection, Cross site scripting and other web attacks before hackers do! 
Download Trial at:

http://www.securityfocus.com/sponsor/pen-test_050831
-------------------------------------------------------------------------------


Current thread: