Vulnerability Development mailing list archives

Re: Blind Remote Buffer Overflow


From: sirsyko () ISHIBOO COM (Ralph The Wonder Llama)
Date: Mon May 1 01:26:38 2000


How does one tell the diffrence in architechture remotely, when the OS runs
on multiple architechtures? Other than just taking a stab at it untill it
well.. if it is a unix system and you have access to the shell, the uname
-a command will do the trick:

$ uname -a
Linux intra 2.0.33 #2 Thu Dec 11 14:08:32 MET 1997 i586 unknown
$

thats not in any way "blind attacking".

If I'm not mistaken some of the network scanners like nmap will do os
fingerprinting based on responses to certain types of network packets.

Search the bugtraq lists at http://www.securityfocus.com for
"os fingerpringing" for more info.

Adam


Current thread: