Basic Enumeration
Host Enumeration
Live host enumeration with cmd.exe
for /L %i in (1,1,255) do @ping -n 1 10.10.10.%i | find "TTL="Hostname enumeration with host (Linux)
host (Linux)for ip in $(seq 1 254); do host 10.10.10.$ip; done | grep -v "not found"Port Scanning
Nmap
#!/bin/bash
nmap -sn -oN ip_list 192.168.1.0/24
cat ip_list | while read ip
do
nmap -sCV -p- -vvv -oA $ip.map $ip
doneNmapAutomator
Port scanning with netcat
TCP:
UDP:
Masscan
SMB/Samba
NetBIOS
Last updated