Penetration Testing mailing list archives

Re: Discovering Live Hosts


From: Fabrizio <staticrez () gmail com>
Date: Wed, 8 Aug 2007 07:28:21 -0500

List,

I didn't see anyone mention hping for ICMP reconnaisance. They also
talk about using Sing as well.

check out this article:

http://www.sans.org/resources/idfaq/icmp_misuse.php

f

On 8/8/07, Dan Catalin Vasile <hardware_cta () yahoo com> wrote:
Note: forwarded message attached.



      ____________________________________________________________________________________
Fussy? Opinionated? Impossible to please? Perfect.  Join Yahoo!'s user panel and lay it on us. 
http://surveylink.yahoo.com/gmrs/yahoo_panel_invite.asp?a=7


---------- Forwarded message ----------
From: Dan Catalin Vasile <hardware_cta () yahoo com>
To: rajat swarup <rajats () gmail com>
Date: Tue, 7 Aug 2007 23:54:57 -0700 (PDT)
Subject: Re: Discovering Live Hosts
--- rajat swarup <rajats () gmail com> wrote:

On 8/8/07, Nikhil Wagholikar <visitnikhil () gmail com>
wrote:

Thanks for your suggestion. However as I said
earlier that "if suppose SMTP is
configured on port 26 instead of traditional port
25, then it would
add a twist to this situation". Hence your
suggested method would
still leave some hosts down. Can you kindly
further granularize your
suggestion?




But it would turn up with port 25 as "closed" which
still shows that
the host is alive.


Or not! The fw can be configured not to respond in
case that a port is closed. In this situation nmap
reports the port as "filtered" and you can't tell if
the host is up. In fact, a live host with no ports
open and with a fw configured to reject icmp can
appear as offline.





--
Rajat Swarup

http://rajatswarup.blogspot.com/


------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE
today!

http://www.cenzic.com/downloads

------------------------------------------------------------------------






____________________________________________________________________________________
Be a better Globetrotter. Get better travel answers from someone who knows. Yahoo! Answers - Check it out.
http://answers.yahoo.com/dir/?link=list&sid=396545469


------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------


------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------


Current thread: