Nmap
Nmap
Good opsec
--script-args http.useragent="CUSTOM_AGENT"Port Scans
Host Discovery (ping sweep)
nmap -sn <ip>/<cidr>Aggressive Scan a single port
nmap -p<port> -A <ip>Syn Scan for all open ports
nmap -p- -sS <ip>Fuck you tell me scans (can be loud)
Threader3000
Enumeration
SMB Enumeration
RPC Enumeration
Last updated