<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/css" href="/stylesheets/rss.css"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/">
  <channel>
    <title>ClearNet Security: Quick list of cool new things in Nmap 4.00</title>
    <link>http://blog.clearnetsec.com/articles/2006/02/03/quick-list-of-cool-new-things-in-nmap-4-00</link>
    <language>en-us</language>
    <ttl>40</ttl>
    <description></description>
    <item>
      <title>Quick list of cool new things in Nmap 4.00</title>
      <description>&lt;p&gt;I'm catching up on the new features in &lt;a href="http://www.insecure.org/nmap/download.html"&gt;Nmap 4.00&lt;/a&gt; from this &lt;a href="http://www.securityfocus.com/columnists/384"&gt;Security Focus interview with Fyodor&lt;/a&gt;.  Some good things to remember:&lt;/p&gt;
&lt;ul&gt;
  &lt;li&gt;press &lt;em&gt;[enter]&lt;/em&gt; anytime to get an estimate of when nmap will finish&lt;/li&gt;
  &lt;li&gt;press 'v' anytime to enable verbose mode / press 'V' anytime to disable verbose mode&lt;/li&gt;
  &lt;li&gt;there are now 3,153 signatures to detect an application or service (and possibly version) of a listening port&lt;/li&gt;
  &lt;li&gt;there is a new &lt;em&gt;--version-intensity &lt;/em&gt;option which specifies how hard nmap will interrogate a listening port&lt;img src="http://www.clearnetsec.com/roller/resources/cns/Insecurelogo-eye-90x168.gif" alt="nmap" align="right" /&gt;&lt;/li&gt;
  &lt;li&gt;new &lt;em&gt;--badsum&lt;/em&gt; option which tells nmap to use invalid TCP or UDP checksums (can give you more information about a FW/IPS)
    &lt;ul&gt;
      &lt;li&gt;Here is the &lt;a href="http://www.phrack.org/show.php?p=60&amp;amp;a=12"&gt;link to Phrack #60&lt;/a&gt; which gives the why and how of this new feature (written by &lt;a href="http://www.antifork.org/"&gt;Ed3f&lt;/a&gt;) &lt;/li&gt;
    &lt;/ul&gt;
  &lt;/li&gt;
  &lt;li&gt;much faster (although this depends on things like bandwidth, latency, and which command line options you specified) &lt;/li&gt;
  &lt;li&gt;better OS detection (uses more tests to gain accuracy) &lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Here is a &lt;a href="http://www.insecure.org/nmap/data/nmap.usage.txt"&gt;link to the official quick list of options for Nmap 4.00&lt;/a&gt; &lt;/p&gt;
&lt;p&gt;

</description>
      <pubDate>Fri, 03 Feb 2006 11:57:00 -0700</pubDate>
      <guid isPermaLink="false">urn:uuid:6e3d6965-3fed-4790-b364-9e7f60ab748b</guid>
      <author>tate@ClearNetSec.com (Tate Hansen)</author>
      <link>http://blog.clearnetsec.com/articles/2006/02/03/quick-list-of-cool-new-things-in-nmap-4-00</link>
      <category>nmap</category>
    </item>
  </channel>
</rss>
