hack_postconnect_infogathering
Differences
This shows you the differences between two versions of the page.
Next revision | Previous revision | ||
hack_postconnect_infogathering [2020/05/31 16:22] – created gman | hack_postconnect_infogathering [2020/05/31 17:50] (current) – gman | ||
---|---|---|---|
Line 1: | Line 1: | ||
- | ====== | + | ====== |
- | Post-Connection Attacks: After you connect to a newtork... | + | **Post-Connection Attacks:** After you connect to a newtork... the first thing you will likely want to do is know what is out there. Info gathering. Recon. |
- | * Download | + | * Find out what is attached to the network: IP, MAC, OS, Ports, Services... |
+ | |||
+ | If you need a practice | ||
* Make sure to create and use a snapshot of that VM so you can reset by creating a new snapshot from the original VM when the time runs out. | * Make sure to create and use a snapshot of that VM so you can reset by creating a new snapshot from the original VM when the time runs out. | ||
+ | **Tools:** Tools: netdiscover (simple) and nmap (more detailed) | ||
+ | * After you get your feet wet with nmap, read [[https:// | ||
+ | |||
+ | ---- | ||
+ | |||
+ | ===== NetDiscover ===== | ||
+ | |||
+ | **netdiscover: | ||
+ | |||
+ | < | ||
+ | |||
+ | **Provides: | ||
+ | - IP Address | ||
+ | - MAC Address | ||
+ | - Vendor Info | ||
+ | |||
+ | ---- | ||
+ | ===== ZenMap ===== | ||
+ | |||
+ | ZenMap is a GUI frontend for Nmap. | ||
+ | |||
+ | **Run:** ``zenmap`` | ||
+ | * __Target__: 192.168.1.1/ | ||
+ | * __Command__: | ||
+ | * __Profile__: | ||
+ | * __Ping scan__: very quick & simple (pings every possible IP in the range, similar to netdiscover but more info) | ||
+ | * __Quick scan__: Ping + Open Ports on discovered devices | ||
+ | * __Quick scan plus__: slower but shows more info (o/s, device type, program and program version running on discovered ports) | ||
+ | |||
+ | **Installation Instructions: | ||
+ | |||
+ | 1. [[https:// | ||
+ | |||
+ | 2. If you haven' | ||
+ | |||
+ | < | ||
+ | |||
+ | 3. Convert the rpm to debian format: | ||
+ | |||
+ | < | ||
+ | |||
+ | 4. Use dpkg to install the shiny new .deb package: | ||
+ | |||
+ | < | ||
+ | |||
+ | |||
+ | ---- | ||
+ | |||
+ | ===== Nmap ===== | ||
+ | |||
+ | This is the mother of all tools... Buy and read [[https:// | ||
+ | |||
+ | ---- |
hack_postconnect_infogathering.1590942143.txt.gz · Last modified: by gman