-
Notifications
You must be signed in to change notification settings - Fork 14
Quick scan
lethanhtung01011980 edited this page Apr 24, 2020
·
9 revisions
- To quick start an attack
- Scan all:
./nmapAutomator.sh ip All
- Scan all ports:
nmap -p- -T4 -A -v ip
- Scan vuln for a port:
nmap -v --script=vuln ip -pXX -T4
- Scan exploit for a port:
nmap -v --script exploit -pXX ip
FTP
- Scan for anonymous FTP:
nmap -v -p 21 --script=ftp-anon.nse ip
- FTP with backdoor: ftp-proftpd-backdoor.nse, ftp-vsftpd-backdoor.nse and ftp-vuln-cve2010-4221.nse
SMB
- Scan for SMB:
nmap -v $ip --script smb-os-discovery.nse
Web
- dirbuster: https://github.com/lethanhtung01011980/Notes/wiki/Web-Enumeration#dirbuster---gui
- Linux extension to scan: php,sh,jsp,pl,py,txt
- Windows extension to scan: asp,aspx,txt,jsp,bat
Samba
enum4linux -U -o ip