Penetration Testing mailing list archives

Re: Rookie question about differences between -S and -sI option


From: "Mark Fosseth" <brundleflynet () hotmail com>
Date: Wed, 15 Feb 2006 12:40:45 +0000

Hi guys,

I explained myself in a bad way,I try to more precise here ;

I know a bit Idle scan but I still have to find a good zombie,meanwhile I did that :

I firstly issued a simple scan like that  :
nmap -vv -P0 -T4 -sS xxx.xxx.xxx.50

and I obtained 2 open ports, 21 and 23

then I tried to spoof my ip scanning the same target like that :
nmap -vv -P0 -T4 -S xxx.xxx.xxx.xxx ( spoofed ) -e eth0 xxx.xxx.xxx.50 ( same target as simple scan ) but I obtained every port closed even if nmap scanned clearly the same target as the original trivial scan against xxx.xxx.xxx.50.

Am I badly synthaxing ?..or anything alse that I am missing  ?

Thanks guys

Yashin


P.S. : beeing new here I still have to understand how to proprerly reply to messages :-( , thanks Tim about helping me :-)



------------------------------------------------------------------------------
Audit your website security with Acunetix Web Vulnerability Scanner: Hackers are concentrating their efforts on attacking applications on your website. Up to 75% of cyber attacks are launched on shopping carts, forms, login pages, dynamic content etc. Firewalls, SSL and locked-down servers are futile against web application hacking. Check your website for vulnerabilities to SQL injection, Cross site scripting and other web attacks before hackers do! Download Trial at:

http://www.securityfocus.com/sponsor/pen-test_050831
-------------------------------------------------------------------------------


Current thread: