Hi Guys, there are very few technical network security assessment checklist. So I thought to share my own on this. Have a look and enjoy. Lets talk about the scope first. If you are given a 1000 machines to perform VAPT, then here is your scope. Single machine can have 65535 ports open. Any single port can deploy any service software from the world. For example FTP can be run on smartftp, pureftpd etc.. Any single FTP software version (for example pureftpd 1.0.22) can have number of vulnerabilities available. So if you multiply all of these, then it is impossible for any auditor to go ahead and probe all ports manually and find services manually. Even if he/she is able to do it, it is impossible to check all vulnerabilities that are pertaining to a single port of a single machine. Hence we have to rely on scanners such as nexpose, nessus, openvas, coreimpact etc. Here are some quick tools and test cases that one can perform on commonly found ports in the network pentest.
Everything about threat intelligence, blue team, red team, pentesting, security audit, security review, testing and assessment.
Showing posts with label network security. Show all posts
Showing posts with label network security. Show all posts
Thursday, March 30, 2017
Thursday, May 1, 2014
Fool The Network Hunters (Hackers)
Portspoof is meant to be a lightweight, fast, portable and
secure addition to the any firewall system or security system. The general goal
of the program is to make the information gathering phase slow and bothersome
for your attackers as much it is only possible. This is quite a change to the
standard 5s Nmap scan, that will give a full view of your systems running
services.
So let’s
start directly. So this is how the common structure of portspoof. First I will
mention normal network structure without using portspoof and then with using
portspoof. Below figure shows the normal structure of my network.
Labels:
april fool,
nessus,
nessus scan,
network,
network security,
nmap,
nmap scan,
port scan
Monday, March 3, 2014
Spoofing Ports To Trick Bad Guys
Portspoof is meant to be a lightweight, fast, portable and secure
addition to the any firewall system or security system.
The general goal of the program is to make the reconessaince phase slow
and bothersome for your attackers as much it is only possible.
This is quite a change to the standard 5s Nmap scan, that will give a
full view of your systems running services.
Labels:
nessus,
nessus scan,
network security,
nmap,
nmap scan,
port scan,
transport layer security
Friday, September 20, 2013
Network Intelligence Gathering
This article is all about different information-gathering techniques
on the network. It is the most essential and important task of
attackers. Knowing the opponents and their interests can be valuable.
Here I am going to show you which are the different ways and techniques
one can do the network information/intelligence gathering.
INTRODUCTION
Let’s think of any thrilling movie theft. What do robbers do before
they break into the bank or anything else? They gather information. They
collect each and every bit of information about the bank system, alarm
methodology, CCTV interface, the guards’ changing time, and a list of
weapons that the guards have. After gathering information they make
plans and attack or rob the bank. Assume they don’t have this
information and they rob the bank directly. What will happen? You will
find that they are caught by the police.
The same scenario can also be applied in the information security
world. Before attacking or testing something, a hacker/tester needs to
find information about his/her target. This target can be a network, web
application, organization, or person. In our world, finding information
is also called footprinting or doxing. Also, the word “reconnaissance”
can be used sometimes.
Subscribe to:
Posts (Atom)


