Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: nessus scan ids |
|---|---|
| Date: | Fri, 24 Sep 2004 10:35:47 -0600 |
I don't think Nessus uses tactics to verify if the stealth scans it uses are being detected. This would defeat the purpose of stealth scans since verifying detection means detection. In other words, this would be something like stealth detected scanning which is contradictory.
Nessus does use some tactics to defeat NIDS systems like double slashes in HTTP or fake RST packets. More info and good references here: http://www.nessus.org/doc/nids.html
-oscar
On Wed, 22 Sep 2004 13:20:55 -0400, Sidney Henry <sidneyhenry@hotmail.com> wrote:
Hi,
Which of the following tactics can Nessus use to verify that an Intrusion Detection System (IDS) can detect stealth scans?
thanks
Free yourself from those irritating pop-up ads with MSN Premium: Join now and
get the first two months FREE*
_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus
-- Oscar Castaneda V. oscarcvt@galileo.edu PGP Fingerprint C289 205F 1C75 6E5F 8016 4415 8672 D222 2CAE 00E0
_______________________________________________ Nessus mailing list Nessus@list.nessus.org http://mail.nessus.org/mailman/listinfo/nessus
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | RE: nessus scan ids, Keyur Lavingia |
|---|---|
| Next by Date: | Re: Can't use auth by password in SSLv2, Renaud Deraison |
| Previous by Thread: | nessus scan ids, Sidney Henry |
| Next by Thread: | RE: nessus scan ids, Keyur Lavingia |
| Indexes: | [Date] [Thread] [Top] [All Lists] |