Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: Block OS Detection |
|---|---|
| Date: | Fri, 25 Jan 2008 15:42:28 -0200 |
http://force.coresecurity.com
-ivan
For Windows System and IIS is not quite easily to do that. I don't know if someone has a solution that isn't reverse proxy.
Regards,
Arafat M. Bique Network Infrastructure IT Department email:arafat.bique@bcifomento.co.mz Web:http://www.bcifomento.co.mz
-----Original Message----- From: listbounce@securityfocus.com [mailto:listbounce@securityfocus.com] On Behalf Of John Brazel Sent: Wednesday, September 05, 2007 10:01 AM To: Attari Attari Cc: pen-test@securityfocus.com Subject: Re: Block OS Detection
OpenBSD's pf firewall has a 'scrub' option that allows normalisation of various TCP header fields, as well as fragment re-assembly and the like.
J.
On 8/31/07, Attari Attari <c70n3@yahoo.co.in> wrote:http://help.yahoo.com/l/in/yahoo/mail/yahoomail/tools/tools-08.html/Hello All:
Is there a PRACTICAL solution from PRODUCTION environments that can be used to block OS detection from tools like NMAP? I googled and read some notes but couldn't find a real world solution to blocking Windows & Linux OS detection.
I'm quite sure I'll get the right inputs here.
Thank you.
Attari
Unlimited freedom, unlimited storage. Get it now, on------------------------------------------------------------------------
------------------------------------------------------------------------This list is sponsored by: Cenzic
Need to secure your web apps NOW? Cenzic finds more, "real" vulnerabilities fast. Click to try it, buy it or download a solution FREE today!
http://www.cenzic.com/downloads
------------------------------------------------------------------------ This list is sponsored by: Cenzic
Need to secure your web apps NOW? Cenzic finds more, "real" vulnerabilities fast. Click to try it, buy it or download a solution FREE today!
http://www.cenzic.com/downloads ------------------------------------------------------------------------
------------------------------------------------------------------------ This list is sponsored by: Cenzic
Need to secure your web apps NOW? Cenzic finds more, "real" vulnerabilities fast. Click to try it, buy it or download a solution FREE today!
http://www.cenzic.com/downloads ------------------------------------------------------------------------
-- "Buy the ticket, take the ride" -HST
Ivan Arce CTO
CORE SECURITY TECHNOLOGIES http://www.coresecurity.com
PGP Fingerprint: C7A8 ED85 8D7B 9ADC 6836 B25D 207B E78E 2AD1 F65A
------------------------------------------------------------------------ This list is sponsored by: Cenzic
Need to secure your web apps NOW? Cenzic finds more, "real" vulnerabilities fast. Click to try it, buy it or download a solution FREE today!
http://www.cenzic.com/downloads ------------------------------------------------------------------------
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Oracle password cracker, ahgaber_rehan |
|---|---|
| Next by Date: | Re: Question re: load balancers as a security device, Dotzero |
| Previous by Thread: | Oracle password cracker, ahgaber_rehan |
| Next by Thread: | Re: Block OS Detection, Danny Fullerton |
| Indexes: | [Date] [Thread] [Top] [All Lists] |