Главная
Study mode:
on
1
Introduction
2
Basic TCPIP handshake
3
TCPIP definitions
4
TCPIP handshake
5
Operating system dip
6
Traditional port scanning
7
Example
8
Analysis
9
Noise
10
Timing Calculation
11
When Did This Tool
12
Ported To Windows 2000
13
Raw Sockets
14
Spoofer
15
Host Scan
16
Verbosity
17
Results
18
Packets
19
Positive increments
20
Open ports
21
ID counters
22
Stateful Firewall
23
Download Site
24
The Problem
25
The Question
26
The Answer
27
Multiple Hosts
28
Is it Accurate
29
Todays Question
30
Thank You
Description:
Explore the intricacies of building a blind IP spoofed portscanning tool in this 44-minute Black Hat USA 2001 conference talk by Thomas Olofsson. Delve into the fundamentals of TCP/IP handshakes and definitions before examining traditional port scanning techniques with practical examples and analysis. Learn about noise reduction, timing calculations, and the tool's adaptation to Windows 2000 raw sockets. Discover the functionalities of the spoofer, including host scanning, verbosity options, and result interpretation. Investigate packet behavior, open port detection, and ID counter mechanisms. Address challenges posed by stateful firewalls and explore the tool's accuracy when scanning multiple hosts. Gain insights into the development process, potential applications, and ethical considerations surrounding this advanced network security tool.

Building a Blind IP Spoofed Portscanning Tool

Black Hat
Add to list
0:00 / 0:00