Nmap Development mailing list archives

Re: nmap -sT localhost showing ephemeral ports?


From: Jacek Wielemborek <d33tah () gmail com>
Date: Thu, 05 Jun 2014 23:18:31 +0200

08/02/2014 23:09:58 Jacek Wielemborek <d33tah () gmail com>:
20:17:03    bonsaiviking $ <ketilmore6>  turns out the nmap -p
1-65000 was finding open ports by accident because source port
sometimes was equal to destination port. (birthday paradox)
20:17:07    bonsaiviking $ wtf
20:18:58    bonsaiviking $ confirmed on svn r32703
20:19:31    bonsaiviking $ but only with -sT

I just thought of solution - perhaps we should connect again to a 
port that seems to be open to get a different ephemeral port? If 
it's closed this time, we know that it was probably a false 
positive.

Attachment: signature.asc
Description: This is a digitally signed message part.

_______________________________________________
Sent through the dev mailing list
http://nmap.org/mailman/listinfo/dev
Archived at http://seclists.org/nmap-dev/

Current thread: