OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: Disovering hosts using UDP services

From: Martin Zember (martin.zembermatfyz.cz)
Date: Sun Sep 07 2008 - 14:50:36 CDT


Nmap usually doesn't detect UDP ports/services if you omit -sV option
(version scan).

On Thu, Sep 4, 2008 at 9:32 PM, Gleb Paharenko <gpaharenkogmail.com> wrote:
> Dear list.
>
> Often udp port scanning say with nmap -sU -pPort1,Port2,.. does not
> give results as UDP services tends do not respond to malformed
> packets. At the same time utilities which send good packets getting
> results and allows to enumerate hosts on the net. For example
> ike-scan usually give you the VPN endpoints, while nmap will not be
> able to do this. Another example - dns server, it will not respond to
> nmap UDP packet, but will respond for good dns query.
>
> I'm looking for tools which will allow enumerate
> - dns 53
> - snmp discover 161
> - windows discovery (135,139,138,445,137)
> - ntp discovery 123
> - ms sql 1434
>
>
> I'm interested on your thoughts about advanced discovery techniques as well.
>
> --
> Best regards.
> Gleb Pakharenko.
> http://gpaharenko.livejournal.com
> http://www.linkedin.com/in/gpaharenko
>
> ------------------------------------------------------------------------
> This list is sponsored by: Cenzic
>
> Top 5 Common Mistakes in
> Securing Web Applications
> Get 45 Min Video and PPT Slides
>
> www.cenzic.com/landing/securityfocus/hackinar
> ------------------------------------------------------------------------
>
>

------------------------------------------------------------------------
This list is sponsored by: Cenzic

Top 5 Common Mistakes in
Securing Web Applications
Get 45 Min Video and PPT Slides

www.cenzic.com/landing/securityfocus/hackinar
------------------------------------------------------------------------