pen-test
[Top] [All Lists]

Re: Banner Grabbing

To: pen-test@securityfocus.com
Subject: Re: Banner Grabbing
From: sami ghourabi <sami.ghourabi@icn.com.tn>
Date: Mon, 25 Dec 2006 09:45:12 +0100
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
In-reply-to: <054e01c7260c$21426190$0300a8c0@m1chomelab.com>
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
References: <20061217214314.31307.qmail@securityfocus.com> <458628A2.9030208@dmzs.com> <a43117df0612180009t3f572594k56dbeeef976cbcb4@mail.gmail.com> <45869D9F.4070108@dmzs.com> <e5c44eea0612210738t47695f9ele13a0c8060d18e21@mail.gmail.com> <052401c72551$230494f0$0300a8c0@m1chomelab.com> <458BE464.4050001@icn.com.tn> <054e01c7260c$21426190$0300a8c0@m1chomelab.com>
Resent-date: Tue, 26 Dec 2006 06:57:50 -0700 (MST)
Resent-from: pen-test-return-1078483324@securityfocus.com
Resent-message-id: <20061226135750.B948E253F15@outgoing3.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
User-agent: Thunderbird 1.5.0.9 (Windows/20061207)

here is windows port, but I never tried it
http://www.vulnwatch.org/netcat/

Michael J Condon a écrit :
And Netcat is Unix ony?
----- Original Message ----- From: "sami ghourabi" <sami.ghourabi@icn.com.tn>
To: "Michael J Condon" <mjc001@jjuno.com>
Cc: <pen-test@securityfocus.com>
Sent: Friday, December 22, 2006 7:57 AM
Subject: Re: Banner Grabbing


Michael J Condon a écrit :
What steps can be used to prevent "OS Banner Grabbing" by the client? Also, what is the best method or "attack" to get to a banner on MS and non MS Operating Systems?


Michael,

It depends on the service you want to protect. Just type "change <service_name> banner on <os_name>" in google. With a simple telnet client you can grab almost all banners, but netcat is the most recommended tool for this kind of job.

regards,
Sami.





<Prev in Thread] Current Thread [Next in Thread>