Quantcast
Channel: Pax Pentest » Nmap
Browsing index pages (47 articles)
↧

Metasploitable 2: Port 8787 Open and Unknown

The Nmap scan of Metasploitable 2 revealed: PORT      STATE SERVICE     VERSION 8787/tcp  open  unknown As we can see this Nmap scan did not recognise the service signature running on port 8787 and so...

View Article


Metasploitable 2: UnreaIRCD IRC daemon

The Nmap scan of Metasploitable 2 revealed: PORT STATE SERVICE VERSION 6667/tcp open irc Unreal ircd 6697/tcp open irc Unreal ircd UnreaIRCD is an Internet Relay Chat service. This exploit has been...

View Article


Metaspolitable 2: Port 6000 – X11 Server

It’s worth noting at the outset of this post that I was unsuccessful in exploiting this X11 service, but will document my efforts nonetheless. The Nmap scan of Metasploitable 2 revealed: PORT STATE...

View Article

Image may be NSFW.
Clik here to view.

Metasploitable 2: Port 5900 – VNC

The Nmap scan of Metasploitable 2 revealed: PORT      STATE SERVICE     VERSION 5900/tcp  open  vnc         VNC (protocol 3.3) The information online pertaining to exploiting this VNC service all use...

View Article

Metasploitable 2: Port 5432 – PostgreSQL

The Nmap scan of Metasploitable 2 revealed: PORT      STATE SERVICE     VERSION 5432/tcp  open  postgresql  PostgreSQL DB 8.3.0 – 8.3.7 This exploit is straight forward brute force using Metasploit:...

View Article


Metasploitable 2: Port 3306 MySQL

The Nmap scan of Metasploitable 2 revealed: PORT      STATE SERVICE     VERSION 3306/tcp  open  mysql       MySQL 5.0.51a-3ubuntu5 The Nessus report on this port was very revealing; here is some of the...

View Article

Metasploitable 2: Port 1524 ingreslock Backdoor

The Nmap scan of Metasploitable 2 revealed: PORT      STATE SERVICE     VERSION 1524/tcp  open  ingreslock? Ingreslock was popular for adding a backdoor on to a compromised server. The Nessus report...

View Article

Metasploitable 2: Java RMI (Remote Method Invocation) Server

The Nmap scan of Metasploitable 2 revealed: PORT      STATE SERVICE     VERSION 1099/tcp  open  rmiregistry GNU Classpath grmiregistry From Wiki: The Java Remote Method Invocation (Java RMI) is a Java...

View Article


Metasploitable 2: Remote Access Ports 512, 513 & 514

The Nmap scan of Metasploitable 2 revealed: PORT      STATE SERVICE     VERSION 512/tcp   open  exec? 513/tcp   open  login 514/tcp   open  tcpwrapped All of these ports are running “r” services. These...

View Article


Metasploitable 2: Port 3632 distccd Exploit and Privilege Escalation

The Nmap scan of Metasploitable 2 revealed: PORT      STATE SERVICE     VERSION 3632/tcp  open  distccd? What is distccd? Distcc is a program to distribute builds of C, C++, Objective C or Objective...

View Article

Metasploitable 2: Port 23 Open Telnet

The Nmap scan of Metasploitable 2 revealed: PORT      STATE SERVICE     VERSION 23/tcp    open  telnet      Linux telnetd Most of the information on the Internet talks of using a password cracking tool...

View Article

Metasploitable 2: Exploiting FTP server vsftpd backdoor

The Nmap scan of Metasploitable 2 revealed: PORT      STATE SERVICE     VERSION 21/tcp    open  ftp         vsftpd 2.3.4 In the Metasploit console: msf > search vsftpd Matching Modules...

View Article

Metasploitable 2: Port Scan – Service and version detection Nmap output

This blog post simply details the results of scanning Metasploitable 2 with Nmap for easy future reference. Nmap scan flags used: nmap -sV -O -p- 192.168.1.103 Service version detection (sV) – OS...

View Article


Nmap: Hiding IP Address using Proxychains with Tor in Kali Linux

Superb video below demonstrating configuring Proxychains with Tor for anonymous port scanning and such within Kali Linux:

View Article

Image may be NSFW.
Clik here to view.

Detecting Nmap Xmas Scan (-sX) in Wireshark and Snorby

This is the fifth in a series of posts looking at detecting Nmap scans in Wireshark. I’m being guided by Chapter 31 of Wireshark Network Analysis entitled: “Detect Scanning and Discovery processes”....

View Article


Where I’m at

It’s three months since I wrote my last “Where I’m at” post. I must admit this cyber security hobby is something of a time vampire and extremely addictive. Here’s a breakdown of where I find myself...

View Article

Image may be NSFW.
Clik here to view.

Results of an Nmap aggressive scan using Snorby in Security Onion

Following a previous post I performed an “aggressive” scan using Nmap - including service/version, OS detection and Nmap Scripting Engine (NSE) – on the machine hosting Security Onion on an Ubunutu...

View Article


Image may be NSFW.
Clik here to view.

Detecting Nmap NULL Scan (-sN) in Wireshark

This is the fourth in a series of posts looking at detecting Nmap scans in Wireshark. I’m being guided by Chapter 31 of Wireshark Network Analysis entitled: “Detect Scanning and Discovery processes”....

View Article

Image may be NSFW.
Clik here to view.

Security Onion IDS (Intrusion Detection System) NSM (Network Security...

Since I began my series on detecting Nmap in Wireshark I’ve become somewhat obsessed with looking at detection and security software that can identify port scans and more. In the book Nmap Network...

View Article

Image may be NSFW.
Clik here to view.

Detecting Nmap TCP SYN Stealth Scan -sS within Wireshark

This is the third in a series of posts looking at detecting Nmap scans in Wireshark. I’m being guided by Chapter 31 of Wireshark Network Analysis entitled: “Detect Scanning and Discovery processes I’ve...

View Article
Browsing index pages (47 articles)


Latest Images