CEH scanning methodology is the important step i.e. scanning for open ports over a network. Port is the technique used to scan for open ports. This methodology performed for the observation of the open and close ports running on the targeted machine. Port scanning gathered a valuable information about the host and the weakness of the system more than ping sweep.
Network Mapping (NMAP)
Basically NMAP stands for Network Mapping. A free open source tool used for scanning ports, service detection, operating system detection and IP address detection of the targeted machine. Moreover, it performs a quick and efficient scanning a large number of machines in a single session to gathered information about ports and system connected to the network. It can be used over UNIX, LINUX and Windows.There are some terminologies which we should understand directly whenever we heard like Open ports, Filtered ports and Unfiltered ports.
Open Ports means the target machine accepts incoming request on that port cause these ports are used to accept packets due to the configuration of TCP and UDP.
Filtered ports means the ports are usually opened but due to firewall or network filtering the nmap doesn't detect the open ports.
Unfiltered means the nmap is unable to determine whether the port is open or filtered while the port is accessible.
Types Of NMAP Scan
| Scan Type | Description | 
|---|---|
| Null Scan | This scan is performed by both an ethical hackers and black hat hackers. This scan is used to identify the TCP port whether it is open or closed. Moreover, it only works over UNIX based systems. | 
| TCP connect | The attacker makes a full TCP connection to the target system. There's an opportunity to connect the specifically port which you want to connect with. SYN/ACK signal observed for open ports while RST/ACK signal observed for closed ports. | 
| ACK scan | Discovering the state of firewall with the help ACK scan whether it is stateful or stateless. This scan is typically used for the detection of filtered ports if ports are filtered. Moreover, it only works over the UNIX based systems. | 
| Windows scan | This type of scan is similar to the ACK scan but there is ability to detect an open ports as well filtered ports. | 
| SYN stealth scan | This malicious attack is mostly performed by attacker to detect the communication ports without making full connection to the network. This is also known as half-open scanning. | 
All NMAP Commands
| Commands | Scan Performed | 
|---|---|
| -sT | TCP connect scan | 
| -sS | SYN scan | 
| -sF | FIN scan | 
| -sX | XMAS tree scan | 
| -sN | Null scan | 
| -sP | Ping scan | 
| -sU | UDP scan | 
| -sO | Protocol scan | 
| -sA | ACK scan | 
| -sW | Window scan | 
| -sR | RPC scan | 
| -sL | List/DNS scan | 
| -sI | Idle scan | 
| -Po | Don't ping | 
| -PT | TCP ping | 
| -PS | SYN ping | 
| -PI | ICMP ping | 
| -PB | ICMP and TCP ping | 
| -PB | ICMP timestamp | 
| -PM | ICMP netmask | 
| -oN | Normal output | 
| -oX | XML output | 
| -oG | Greppable output | 
| -oA | All output | 
| -T Paranoid | Serial scan; 300 sec between scans | 
| -T Sneaky | Serial scan; 15 sec between scans | 
| -T Polite | Serial scan; .4 sec between scans | 
| -T Normal | Parallel scan | 
| -T Aggressive | Parallel scan, 300 sec timeout, and 1.25 sec/probe | 
| -T Insane | Parallel scan, 75 sec timeout, and .3 sec/probe | 
How to Scan
You can perform nmap scanning over the windows command prompt followed by the syntax below. For example, If you wanna scan the host with the IP address 192.168.2.1 using a TCP connect scan type, enter this command:nmap 192.168.2.1 –sT
nmap -sT 192.168.2.1
Read more
- Blackhat Hacker Tools
- Pentest Tools Review
- Kik Hack Tools
- Hack Tool Apk
- Pentest Box Tools Download
- Nsa Hacker Tools
- Pentest Tools Android
- Github Hacking Tools
- Hacking Tools Pc
- Pentest Tools Linux
- Hacking Tools Windows 10
- Hack Tools Online
- Hacking Tools 2020
- Free Pentest Tools For Windows
- Pentest Tools Bluekeep
- Pentest Tools Find Subdomains
- Pentest Tools For Ubuntu
- Hack Tool Apk No Root
- Physical Pentest Tools
- Hacker Hardware Tools
- Hacker Tools Free
- Hacker Tools For Windows
- Hak5 Tools
- Pentest Tools Online
- Pentest Tools Find Subdomains
- Hack App
- Hacking Tools For Windows
- Hacking Tools Windows
- Pentest Tools Url Fuzzer
- Hacker
- Pentest Box Tools Download
- Pentest Box Tools Download
- Hack Tools For Games
- Hack Tools For Games
- Hacking Tools For Windows 7
- Hacking Tools Download
- Best Hacking Tools 2020
- Pentest Tools
- Pentest Tools Review
- Beginner Hacker Tools
- Pentest Tools Port Scanner
- Hacking Tools Download
- Wifi Hacker Tools For Windows
- Hack Tools Mac
- Pentest Tools List
- Hacker Techniques Tools And Incident Handling
- Top Pentest Tools
- Hack Tools Github
- Hak5 Tools
- Computer Hacker
- Hacking Tools Github
- Pentest Tools Kali Linux
- Hacker Tools Windows
- Hacks And Tools
- Best Pentesting Tools 2018
- Hacks And Tools
- Hacker Tools For Pc
- Pentest Tools Url Fuzzer
- Hackers Toolbox
- Computer Hacker
- Hacking Tools 2019
- Hack Tools For Games
- Pentest Tools Android
- Hack Tool Apk No Root
- Pentest Tools Online
- Hak5 Tools
- Pentest Tools Kali Linux
- Pentest Recon Tools
- Easy Hack Tools
- Hacking Tools For Mac
- Hack Tools For Pc
- Pentest Tools For Ubuntu
- Pentest Box Tools Download
- Hack Tools For Mac
- Hacker Tools Software
- Hacker Tool Kit
- Hacking Tools For Beginners
- Hacker Tools
- Hack Apps
- Hacking Tools For Pc
- Hack Tools For Ubuntu
- Top Pentest Tools
- Best Hacking Tools 2019
- Hack Tools For Pc
- Pentest Tools Windows
- Hack Tools For Pc
- Hackers Toolbox
- Pentest Tools Apk
- Pentest Tools For Ubuntu
- Pentest Tools List
- How To Install Pentest Tools In Ubuntu

 
No comments:
Post a Comment