Re: http fingerprinting

From: Eric Haugh (haugh@cs.ucdavis.edu)
Date: 04/10/03

  • Next message: Alvin Oga: "Re: Firewall Testing Software"
    From: Eric Haugh <haugh@cs.ucdavis.edu>
    To: Rick Hoekman <rick@paranoia.nl>, pen-test@securityfocus.com
    Date: Wed, 9 Apr 2003 17:50:25 -0700
    
    

    You can get more information on hmap, including source code, at:
    http://wwwcsif.cs.ucdavis.edu/~leed/hmap/

    Eric

    On Tuesday 08 April 2003 05:57 pm, Rick Hoekman wrote:
    > Anyone know if there are tools to fingerprint webservers that do not
    > give away their type and version?
    >
    > As far as I know there is a paper/thesis on one tool called HMAP.pl. You
    > can read it here http://seclab.cs.ucdavis.edu/papers/hmap-thesis.pdf
    >
    > Thanks!
    >
    > Rick

    --------------------------------------------------------------
    Costs are climbing and complaints are rising
    as SPAM overloads your e-mail servers and Inboxes
    SurfControl E-mail Filter puts the brakes on spam & viruses
    and gives you the reports to prove it.
    http://www.securityfocus.com/SurfControl-pen-test2
    Download a free trial and see just
    what's going in and out of your organization.
    --------------------------------------------------------------


  • Next message: Alvin Oga: "Re: Firewall Testing Software"

    Relevant Pages

    • Re: Firewall Testing Software
      ... Generate the packet against the ruleset you would like ... to test using Nemesis and watch the reply thru Tcpdump ... as SPAM overloads your e-mail servers and Inboxes ... SurfControl E-mail Filter puts the brakes on spam & viruses ...
      (Pen-Test)
    • Re: Firewall Testing Software
      ... are some open source/freeware tools that can help: ... There are also a number of other packet creation tools that can aid you in ... as SPAM overloads your e-mail servers and Inboxes ... SurfControl E-mail Filter puts the brakes on spam & viruses ...
      (Pen-Test)
    • Re: BIND/DNS Version check
      ... > version of BIND/DNS running on the server.. ... as SPAM overloads your e-mail servers and Inboxes ... SurfControl E-mail Filter puts the brakes on spam & viruses ...
      (Pen-Test)
    • Re: http fingerprinting
      ... > As far as I know there is a paper/thesis on one tool called HMAP.pl. ... For Apache servers, you can use wh_fingerprint: ... as SPAM overloads your e-mail servers and Inboxes ... SurfControl E-mail Filter puts the brakes on spam & viruses ...
      (Pen-Test)
    • IPv4 - mapped address considered harmful
      ... This document describes posible vulnerabilities in IPv4 mapping. ... Does anyone know of penetration tests that use this? ... as SPAM overloads your e-mail servers and Inboxes ... SurfControl E-mail Filter puts the brakes on spam & viruses ...
      (Pen-Test)