OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
[Full-disclosure] external scan procedure

From: Rossen Naydenov (rnaydenovaegis-is.com)
Date: Mon Mar 14 2005 - 02:49:59 CST


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi guys,

I was wondering if you could tell me how an external scan procedure would look
like (just to check with ours)
        - nmap scan on the ip addresses
                - how often do you use aggressive mode in nmap?
        - feed the ip found from nmap in nessus
        - for firewalls
                - firewall tester
                - firewalk
                - hping
                - what else?
        - for web servers (general)
                - nikto
                - whisker
                - web scarab (may be)
                - what else?

I would like to hear your comments.

- --
Best Regards

Rossen Naydenov
AEGIS-IS JSCo
Bulgaria
http://www.aegis-is.com/
Phone: +359 2 980 20 50
Fax: +359 2 980 66 11
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (GNU/Linux)

iD8DBQFCNVA30zOS046l2x0RAvgPAJ9jJgsbQrV3ZbzzvBxF8v7VlmmLBgCfVN0x
ojE37ujeB/x64AlELTRDLHA=
=/Y5E
-----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://www.secunia.com/