Service Identification

From: John the Kiwi (john_at_johnthekiwi.com)
Date: 09/19/03

  • Next message: Mark G. Spencer: "RE: AirSnort and Kismet on Red Hat 9 with Orinoco Gold?"
    To: "'pen-test@securityfocus.com'" <pen-test@securityfocus.com>
    Date: 19 Sep 2003 18:02:39 +0000
    
    

    Hi all

    I have a remote database to pen test. It runs on port 2000 and has no
    banners. I cannot establish a telnet session without it dropping me
    instantly.

    I would like to do one of two things for my customer:

    Either sniff the records to a text file as they go to the client (I only
    need to grab email addresses as they come to the client from the server)

    or

    Figure out how to connect to the database and extract the records

    I'm not looking for a canned solution, more a quick summary of tools and
    processes that I should be trying.

    I'm sure this is covered a lot but I've searched the list and google and
    haven't found any information on service identification when no banners
    are present and it runs on a non standard port. I'm sure it's my search
    strings but any pointers would be greatly appreciated.

    John the Kiwi

    -- 
    ---------------------------------------------------------------------------
    ----------------------------------------------------------------------------
    

  • Next message: Mark G. Spencer: "RE: AirSnort and Kismet on Red Hat 9 with Orinoco Gold?"

    Relevant Pages

    • Re: Ensuring single user only
      ... logs on to a remote database and binds to a local ... port to get services. ... my application does not authenticate the client ... have no control of) don't provide passwords. ...
      (microsoft.public.win32.programmer.kernel)
    • Ensuring single user only
      ... logs on to a remote database and binds to a local ... port to get services. ... my application does not authenticate the client ... have no control of) don't provide passwords. ...
      (microsoft.public.win32.programmer.kernel)
    • Re: DBD::Informix vs dbaccess
      ... > We have a situation where dbaccess connects fine to a remote database ... > port for outbound packets shows expected behaviour when using dbaccess, ... Is the environment identical when you run the Perl script and when you ... on the machine - and simply want to access the remote database server. ...
      (perl.dbi.users)
    • Re: banners on tcpd (tcpwrappers)
      ... via terminal access and not via the web. ... FreeBSD and that one when you edit the files would allow the banners to ... work but the tcpd I have from the port would show banners to those allowed ... The tcpd in /usr/libexec/tcpd works correctly for access but it ...
      (freebsd-questions)
    • Re: Tomcat and port 80 - access denied
      ... I got a telnet window ... saying connecting to myIpaddress:80 and then it disappeared. ... didn't give me any banners. ... Nothing is listening on port 80. ...
      (comp.os.linux.networking)