Vulnerability Scanning
MITRE ATT&CK™ Active Scanning: Vulnerability Scanning - Technique T1595.002
Theory
Practice
ls /usr/share/nmap/scripts/*.nse# Vulnerability scanning using all scripts
nmap -sS -sV --script "vuln" <TARGET_IP>
# Vulnerability scanning only using safe scripts
nmap -sS -sV --script "vuln and safe" <TARGET_IP>
# Vulnerability scanning using a custom script
wget https://raw.githubusercontent.com/RootUp/PersonalStuff/master/http-vuln-cve-2021-41773.nse
mv http-vuln-cve-2021-41773.nse /usr/share/nmap/scripts/
nmap --script-updatedb
nmap -sS -sV --script="http-vuln-cve-2021-41773" <TARGET_IP>Resources
Last updated