pen-test
[Top] [All Lists]

Re: Discovering Live Hosts

To: pen-test@securityfocus.com
Subject: Re: Discovering Live Hosts
From: "Nikhil Wagholikar" <visitnikhil@gmail.com>
Date: Wed, 8 Aug 2007 11:34:43 +0530
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
Dkim-signature: a=rsa-sha1; c=relaxed/relaxed; d=gmail.com; s=beta; h=domainkey-signature:received:received:message-id:date:from:to:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=o5HfNuw5E9iZSF+SfOiE3Aiv6UyckQ5oj9RxoB1nrfY8SLZz0lz0tTPVc0Ae55+agpepKxL8/dUYumJYhBFviQ1QAJmrnbj0DLGdWSrx9V0j7MP8mKBsad3jfXLDC+j7y1ZliwNJE2VOaXeoRs+wCnYTk5/yVMv4Wtu8RjNf7OI=
Domainkey-signature: a=rsa-sha1; c=nofws; d=gmail.com; s=beta; h=received:message-id:date:from:to:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=Mj1ocT+CO/SwdF53LnkvpMUhz/tfUQSioLdBG+Mw3Z5pvaj2KLAwJ1NA+KkYwL0QgLlqZBc0VdIFD2FamUJH4u2nNqvNGJcvhFAuZknWM2CONj6WIuyY0asF41KqW4hkWweI3UnHvc6qE34T3wmUQdhv6OJ2cC7DmEqfCaSJ/j4=
In-reply-to: <46B931AA.7080207@lusp.com>
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
References: <266316f70708070829w24a05fecqacb4a27a8e40062@mail.gmail.com> <46B931AA.7080207@lusp.com>
Resent-date: Wed, 8 Aug 2007 00:15:49 -0600 (MDT)
Resent-from: pen-test-return-1078484772@securityfocus.com
Resent-message-id: <20070808061549.C4CC8238F0C@outgoing3.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
Hello Jure,

Performing scans from within target LAN is called Vulnerability
Assessment, and doing the same thing from other LAN or outside IP
Address/Addresses is called Penetration Testing.

I have clearly mentioned that the scenario is applicable for
Pen-Testing. Kindly suggest the same answer from Pen-Testing point of
view.

Thanks for your suggestion. This suggestion will be usefull for
Vulnerability Assessors.

---
Nikhil Wagholikar
Information Security Analyst


On 8/8/07, Jure Krasovic <jure.krasovic@lusp.com> wrote:
> Nikhil Wagholikar pravi:
> > Hello List,
> >
> > I need some suggestions and inputs from all Pen-testers around the
> > world on this issue.
>
> Hello Nikhil,
>
> if you are on the same LAN as machines you do pentest, you should try
> arpping.
>
> Regards
>
>       Jure
>

------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>