Host Discovery

Netdiscover

For wireless networks without dhcp server, it also works on hub/switched networks.

Ping Sweep

cmd

powershell

Nmap

SilentListener

Dismap

NetScan - From Windows Host

Active hosts

Operating systems - TTL

  • Linux/MAC OS – 64

  • Windows – 128

  • Cisco Routers – 255

  • DNS – depends on the DNS resolver (can range from 128 to 86400)

Source: https://ostechnix.com/identify-operating-system-ttl-ping/

Port scan

Port Scan

Web Host

  • Information gathering

Information Gathering
hackcheckurl
  • Httpx

Internal pentest

Internal Pentest

Wireshark, tcpdump

Netminer

Netminer

Responder - analysis mode

Fping

Last updated