NETWORK SCANNING
NETWORK Scanning
·
Network
scanning refers to a set of procedures used for identifying hosts, ports and
services in a network.
·
Network
scanning is one of the components of intelligence gathering which can be used
by an attacker to create a profile of the target organization.
The purpose of scanning
is to discover exploitable communications channel, probe as many listeners as
possible, and track the ones that are responsive for an attacker’s particular
needs.
Types of
scanning
· Port scanning – Lists the open ports and services.
· Network scanning – Lists the active hosts and services.
· Vulnerability scanning – shows the presence of known weaknesses.
SCANNING
TOOLS
· Nmap
· Hping3
· Metasploit
· NetScanTools Pro
PING SWEEP – A
network scanning technique you can use to find out which ip addresses map to
live host.
PING SWEEP
TOOLS
· Angry IP Scanner
· NetScanTools Pro
· Colasoft Ping Tool
PORT
SCANNING TECHNIQUES
·
TCP
Scanning
·
UDP
Scanning
·
SCTP
Scanning
·
SSDP
Scanning
·
IPv6 Scanning
BANNER
GRABBING
Banner Grabbing is the
method used to determine the OS running on the target system.
·
Active
Banner Grabbing
·
Passive
Banner Grabbing
PORT
SCANNING COUNTERMEASURES
· Configure firewall and IDS rules
· Check wheather the firewall detects port
scanning activity
· Ensure that the router, IDS and firewall
firmware are updated
· Filter all ICMP messages at the firewall and
routers
· Ensure that the anti-scanning and anti-spoofing
rules are properly configured
Comments
Post a Comment