Nmap Development mailing list archives

Re: Summer of Code Script Ideas


From: Nelson <komseh () gmail com>
Date: Wed, 26 Mar 2008 16:31:56 -0500

I'd like to see a script that attempts to fingerprint VPN devices based on
their handshake and vendor ID responses from the IKE service(port 500/udp).
As we all know it is difficult to identify most UDP services ports as
"open", so this service often goes unnoticed in pentests.  I would even be
happy with a script that confirms that an IKE service is responding on the
host.  Here are some responses from common VPN devices:
http://www.nta-monitor.com/wiki/index.php/IKE_Implementation_Analysis

I'm also interested in a script that would identify if a DNS server is
vulnerable to cache snooping.  I also second the ideas for SMB/Netbios and
SNMP.

On Fri, Mar 21, 2008 at 1:11 AM, Z <shasbot () gmail com> wrote:

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hey, I am planning on applying to Nmap's summer of code project,
specifically to develop NSE scripts. I was wondering what scripts people
would find useful that are not currently out there, so I figure this
would be a good place to get in touch with. I will likely ask around on
some ethical hacking forums and the like too, just checking around to
see what the demand is from the users.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFH41F6cbq6yPGNLfMRAmijAJwN/z8b+hnhanFRxjQMTjW9Oq5tGwCdGvRN
jNSPPboR4Cs6MvN8I0cK0es=
=feV7
-----END PGP SIGNATURE-----

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://SecLists.Org


_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://SecLists.Org


Current thread: