Загрузка...

​Scanning 101: The Scalpel vs. The Sledgehammer 🔪🔨 #cybersecurity #ethicalhacking #kali #linux

Disclaimer: it is illegal to target machines you do not have permission to target. This was done on Hack the Box, which is an ethical hacking platform.​

Ever wonder why your scans take forever? Most beginners just run nmap -A and wait. Pros use a two-pass system to stay fast and surgical.​

1️⃣ Pass 1: The Scout (TCP)I’m running a high-speed TCP discovery scan on all ports (-p- --min-rate 1000). I’m not looking for versions yet; I just want to know which "doors" are open.​

Result: Found Port 22 (SSH) in 2.5 seconds. 💨​

2️⃣ Pass 2: The Interrogator (UDP)Now I’m hitting ports 53, 67, 123, 161, and 500 using a UDP packet scan. UDP is a "silent" protocol—if you don't get a reply, you don't know if the port is open or filtered.​The Secret: I’m using --max-retries 0. In a stable lab, if they don’t answer the first time, they probably aren't there. This saves me from waiting on those annoying ICMP timeouts. ⏱️

• ​53: DNS (Zone transfers)
• ​67: DHCP
• ​123: NTP (Monlist attacks)
• ​161: SNMP (The Goldmine)
• ​500: ISAKMP (VPN/IPSec keys)​

The Goal: Find the "Magic" in the packets before the coffee gets cold.

Nmap is a gentleman; it waits for a reply. In a CTF, don't be a gentleman. Set --max-retries 0 and get your answers now.​

Видео ​Scanning 101: The Scalpel vs. The Sledgehammer 🔪🔨 #cybersecurity #ethicalhacking #kali #linux канала Zero-Trust Wraith
Яндекс.Метрика
Все заметки Новая заметка Страницу в заметки
Страницу в закладки Мои закладки
На информационно-развлекательном портале SALDA.WS применяются cookie-файлы. Нажимая кнопку Принять, вы подтверждаете свое согласие на их использование.
О CookiesНапомнить позжеПринять