Nmap Development mailing list archives

Re: [NSE][PATCH] OpenSSL bindings for NSE


From: Ron <ron () skullsecurity net>
Date: Fri, 28 Nov 2008 07:18:46 -0600

Sven Klemm wrote:
the fact that nmap advertises itself has been discussed, here:
http://seclists.org/nmap-dev/2008/q2/0505.html . There are a few place
were nmap does this advertising, e.g. the NSE http, ssh1 and ssh2
libraries do it.
Your solution to drop TCP connections based on arbitrary strings
doesn't seem like a good idea to me.

Cheers,
Sven

I announce it quite blatantly in my SMB library, as well. My theory is
that I'm writing this for authorized VAs or pentests, where discression
isn't necessarily necessary. It wouldn't be overly hard to modify the
scripts if you wanted a stealth version, but I imagine that there'll
always be unique signatures to detect.

Ron

-- 
Ron Bowes
http://www.skullsecurity.org/

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://SecLists.Org


Current thread: