4. Scan beyond Firewalls and IDS

1. Nmap Scan beyond firewalls and IDS

  1. Fragmented scan

nmap -f [Target IP Address]
  1. Use common source ports

nmap -g 80 [Target IP Address]
  1. Sending smaller packets to scan

nmap --mtu 8 [Target IP Address]
# it fragments the packets (maximum 8 bytes size)
  1. Decoy scan

nmap -D RND:10 [Target IP Address]
# RND = Random IP address
nmap -D [Spoofed IP Address],[Spoofed IP Address],ME [Target IP Address]
  1. Spoof mac

nmap -sT -Pn --spoof-mac 0 [Target IP Address]
  1. Ping sweep

nmap -sP IP/24
  1. Zombie Scan

nmap -sI [Live IP Address got in ping sweep ] [Target IP Address]

Last updated