Scan Techniques, UDP Scan (-sU)
● UDP Scan,● Slower● Combine it with other scans● Closed ports, delays UDP scan sudo nmap -sU -v vps.chrisjanel.eu If marked as Open:Filter than scan with version detection: nmap 192.168.1.1 -sU -v -sV If ports…
● UDP Scan,● Slower● Combine it with other scans● Closed ports, delays UDP scan sudo nmap -sU -v vps.chrisjanel.eu If marked as Open:Filter than scan with version detection: nmap 192.168.1.1 -sU -v -sV If ports…
TCP scan (Connect Scan) when SYN is not available (usually when user is not root or admin Examples nmap -T4 -sT vps.chrisjanel.eu Links https://vps.chrisjanel.eu/wp-admin/post.php?post=109&action=edit
Half open scan Mark as filtered if no response or ICMP error Faster than -sT nmap 192.168.1.1 -sS -vsudo nmap -p2222 --packet-trace -d5 vps.chrisjanel.eu Links https://nmap.org/book/synscan.html#scan-methods-fig-syn-scan-filtered
Check Status and enable firewall ufw statusufw enable ufw status verboseufw status numbered Allow – Deny (Input, Output, Forward) ufw default allow outgoingufw default allow incomingufw default deny outgoingufw default deny incoming Management Delete Numbered…
dig +short myip.opendns.com @resolver1.opendns.com
Works only on local network (same lan, subnet): nmap 10.1.2.0/24 -sn
On the local network it does ARP scan. -sL, List Scan, is a reverse DNS scan Shows dns names and descovers the IP of a domain from the record on the DNS server nmap facebook.com/24…
General notes On local the Discovery users ARP Ping Scan. In order to check scan type, will have to set option double verbose: -vv If root or admin user then the type is Raw Tcp…
From Station-X: https://www.stationx.net/nmap-cheat-sheet/
Email Alerts Menu: Alert > Media types Configure email settings: Type -> Email, Provider -> Generic smtp Test email Menu: Alerts > Actions > Trigger actions Enable Report problems to Zabbix administrators Menu: Users >…