Penetration Testing mailing list archives
Re: Strange NMAP 4.0 Behavior
From: Fabien Degouet <fdegouet () conthackto com mx>
Date: Mon, 20 Feb 2006 21:21:40 -0600
HI, If you want to run a ping (echo) scan then you should specify: nmap -sP -PE 10.1.1.* If you run : nmap -PE 10.1.1.* It's just like running the default option of nmap that is -sS nmap -sS -PE 10.1.1.* Hope this helps, fabien El Lunes 20 Febrero 2006 15:14, Derek Nash escribió:
I was just noticing when running an ICMP Echo scan (-PE) in NMAP version 4.00 that it seems to be including a SYN scan on all Service ports (-sS -F) scan as part of this scan type. I have witnessed this on 2 separate installs and systems, I couldn't find documentation that states this is a new default behavior. Has anyone else witnessed this strange behavior? If this is a new default behavior does anyone know if this behavior is defeatable? This seems like a bug to me, but I thought I would post here prior to submitting a bug report. -- Best Regards, Derek Nash --------------------------------------------------------------------------- --- Audit your website security with Acunetix Web Vulnerability Scanner: Hackers are concentrating their efforts on attacking applications on your website. Up to 75% of cyber attacks are launched on shopping carts, forms, login pages, dynamic content etc. Firewalls, SSL and locked-down servers are futile against web application hacking. Check your website for vulnerabilities to SQL injection, Cross site scripting and other web attacks before hackers do! Download Trial at: http://www.securityfocus.com/sponsor/pen-test_050831 --------------------------------------------------------------------------- ----
------------------------------------------------------------------------------ Audit your website security with Acunetix Web Vulnerability Scanner: Hackers are concentrating their efforts on attacking applications on your website. Up to 75% of cyber attacks are launched on shopping carts, forms, login pages, dynamic content etc. Firewalls, SSL and locked-down servers are futile against web application hacking. Check your website for vulnerabilities to SQL injection, Cross site scripting and other web attacks before hackers do! Download Trial at: http://www.securityfocus.com/sponsor/pen-test_050831 -------------------------------------------------------------------------------
Current thread:
- Strange NMAP 4.0 Behavior Derek Nash (Feb 20)
- Re: Strange NMAP 4.0 Behavior Fabien Degouet (Feb 21)
- Re: Strange NMAP 4.0 Behavior willdamn (Feb 21)
- Re: Strange NMAP 4.0 Behavior Bernhard Mitterer (Feb 21)
- <Possible follow-ups>
- Strange NMAP 4.0 Behavior kx (Feb 21)
- RE: Strange NMAP 4.0 Behavior Monroe, Bruce (Feb 21)