Asset Vulnerability Enumeration

Cheat Sheet

Network Discovery

circle-info

Scan for Find IPs

sudo netdiscover > /tmp/netdiscover.txt

circle-info

Scan for Find Ports

naabu -list /tmp/netdiscover.txt \
      -p - -udp -c 200 \
      -rate 1000 \
      -o /tmp/naabu.txt

circle-info

Scan IPs and Fingerprint Protocols

nmap -iL /tmp/naabu.txt \
     --mtu 5000 -sV -sC -O -T4 -Pn \
     -oX /tmp/nmap.xml
circle-info

Scan Vulnerabilities

circle-info

Misconfiguration & Vulnerabilities

SSL/TLS

circle-info

Test SSL/TLS vulnerabilities on a single host

circle-info

Test SSL/TLS vulnerabilities on a Subnet

circle-info

Test SSL/TLS server implementation bugs

FTP

circle-info

Version Reconnaissance

circle-info

Anonymous Login

WebDAV

circle-info

Scan WebDAV

circle-info

Scan WebDAV

SNMP

circle-info

Enumerate SNMP Public

circle-info

Enumerate Windows Users

circle-info

Enumerate File Shares

SMB

circle-info

Credential Brute Force

circle-info

Detect EternalBlue

Redis

circle-info

Redis Misconfiguration Check

Last updated