Collecting_information.pdf

(458 KB) Pobierz
Mag. iur. Dr. techn. Michael Sonntag
Collecting information
Institute for Information Processing and
Microprocessor Technology (FIM)
Johannes Kepler University Linz, Austria
E-Mail: sonntag@fim.uni-linz.ac.at
http://www.fim.uni-linz.ac.at/staff/sonntag.htm
© Michael Sonntag 2011
Agenda
NMap
Google Hacking
Special search operators
Google cache
Robots.txt
Michael Sonntag
Collecting information
2
NMap
NMap (Network MAPper) is a network scanner
It tries to find all computers in a specific network and checks
what ports are open, what OS they are running, whether
there is a firewall, etc.
But it gives recommendations; e.g. services to disable
Some scans + vuln. systems
Lock-up/crash!
Are there any computers which should not be there?
Can also be used to gather information for a later attack
»
Which OS/software and which version is running
It does not look for specific vulnerabilities!
Used as a tool for inventory generation in a network
Stages: 1 = Host discovery, 2 = Port scan, 3 = Service/
version detection, 4 = OS detection, 5 = Scripting
Scripting may also include vulnerability/malware detection!
Collecting information
3
Michael Sonntag
NMap
Usage:
Start program and enter IP address
Select profile for scanning
»
Special options only available in the command line version or
when constructing a new profile!
Your tasks:
Install NMap (+ the UI – Zenmap)
Scan the local subnet for hosts
»
Use a “Quick scan"
Scan the machine of your neighbour
»
Use a “Regular scan"
Interpret the results
»
Correct output?
»
Something surprising/dangerous found?
Michael Sonntag
Collecting information
4
Sample result:
NMap local subnet scan
Michael Sonntag
Collecting information
5
Zgłoś jeśli naruszono regulamin