Metasploitable 2: Port 8787 Open and Unknown
The Nmap scan of Metasploitable 2 revealed: PORT STATE SERVICE VERSION 8787/tcp open unknown As we can see this Nmap scan did not recognise the service signature running on port 8787 and so...
View ArticleMetasploitable 2: UnreaIRCD IRC daemon
The Nmap scan of Metasploitable 2 revealed: PORT STATE SERVICE VERSION 6667/tcp open irc Unreal ircd 6697/tcp open irc Unreal ircd UnreaIRCD is an Internet Relay Chat service. This exploit has been...
View ArticleMetaspolitable 2: Port 6000 – X11 Server
It’s worth noting at the outset of this post that I was unsuccessful in exploiting this X11 service, but will document my efforts nonetheless. The Nmap scan of Metasploitable 2 revealed: PORT STATE...
View ArticleMetasploitable 2: Port 5900 – VNC
The Nmap scan of Metasploitable 2 revealed: PORT STATE SERVICE VERSION 5900/tcp open vnc VNC (protocol 3.3) The information online pertaining to exploiting this VNC service all use...
View ArticleMetasploitable 2: Port 5432 – PostgreSQL
The Nmap scan of Metasploitable 2 revealed: PORT STATE SERVICE VERSION 5432/tcp open postgresql PostgreSQL DB 8.3.0 – 8.3.7 This exploit is straight forward brute force using Metasploit:...
View ArticleMetasploitable 2: Port 3306 MySQL
The Nmap scan of Metasploitable 2 revealed: PORT STATE SERVICE VERSION 3306/tcp open mysql MySQL 5.0.51a-3ubuntu5 The Nessus report on this port was very revealing; here is some of the...
View ArticleMetasploitable 2: Port 1524 ingreslock Backdoor
The Nmap scan of Metasploitable 2 revealed: PORT STATE SERVICE VERSION 1524/tcp open ingreslock? Ingreslock was popular for adding a backdoor on to a compromised server. The Nessus report...
View ArticleMetasploitable 2: Java RMI (Remote Method Invocation) Server
The Nmap scan of Metasploitable 2 revealed: PORT STATE SERVICE VERSION 1099/tcp open rmiregistry GNU Classpath grmiregistry From Wiki: The Java Remote Method Invocation (Java RMI) is a Java...
View ArticleMetasploitable 2: Remote Access Ports 512, 513 & 514
The Nmap scan of Metasploitable 2 revealed: PORT STATE SERVICE VERSION 512/tcp open exec? 513/tcp open login 514/tcp open tcpwrapped All of these ports are running “r” services. These...
View ArticleMetasploitable 2: Port 3632 distccd Exploit and Privilege Escalation
The Nmap scan of Metasploitable 2 revealed: PORT STATE SERVICE VERSION 3632/tcp open distccd? What is distccd? Distcc is a program to distribute builds of C, C++, Objective C or Objective...
View ArticleMetasploitable 2: Port 23 Open Telnet
The Nmap scan of Metasploitable 2 revealed: PORT STATE SERVICE VERSION 23/tcp open telnet Linux telnetd Most of the information on the Internet talks of using a password cracking tool...
View ArticleMetasploitable 2: Exploiting FTP server vsftpd backdoor
The Nmap scan of Metasploitable 2 revealed: PORT STATE SERVICE VERSION 21/tcp open ftp vsftpd 2.3.4 In the Metasploit console: msf > search vsftpd Matching Modules...
View ArticleMetasploitable 2: Port Scan – Service and version detection Nmap output
This blog post simply details the results of scanning Metasploitable 2 with Nmap for easy future reference. Nmap scan flags used: nmap -sV -O -p- 192.168.1.103 Service version detection (sV) – OS...
View ArticleNmap: Hiding IP Address using Proxychains with Tor in Kali Linux
Superb video below demonstrating configuring Proxychains with Tor for anonymous port scanning and such within Kali Linux:
View ArticleDetecting Nmap Xmas Scan (-sX) in Wireshark and Snorby
This is the fifth in a series of posts looking at detecting Nmap scans in Wireshark. I’m being guided by Chapter 31 of Wireshark Network Analysis entitled: “Detect Scanning and Discovery processes”....
View ArticleWhere I’m at
It’s three months since I wrote my last “Where I’m at” post. I must admit this cyber security hobby is something of a time vampire and extremely addictive. Here’s a breakdown of where I find myself...
View ArticleResults of an Nmap aggressive scan using Snorby in Security Onion
Following a previous post I performed an “aggressive” scan using Nmap - including service/version, OS detection and Nmap Scripting Engine (NSE) – on the machine hosting Security Onion on an Ubunutu...
View ArticleDetecting Nmap NULL Scan (-sN) in Wireshark
This is the fourth in a series of posts looking at detecting Nmap scans in Wireshark. I’m being guided by Chapter 31 of Wireshark Network Analysis entitled: “Detect Scanning and Discovery processes”....
View ArticleSecurity Onion IDS (Intrusion Detection System) NSM (Network Security...
Since I began my series on detecting Nmap in Wireshark I’ve become somewhat obsessed with looking at detection and security software that can identify port scans and more. In the book Nmap Network...
View ArticleDetecting Nmap TCP SYN Stealth Scan -sS within Wireshark
This is the third in a series of posts looking at detecting Nmap scans in Wireshark. I’m being guided by Chapter 31 of Wireshark Network Analysis entitled: “Detect Scanning and Discovery processes I’ve...
View Article