Page 15 - CPTE_Prep_Guide_Sample
P. 15

•  Telnet – a Windows built-in (must
                          enable it). It probes HTTP servers to
                          determine the server field in the HTTP
                          response header. It can probe any
                          running service on a target host. You
                          can log in as a regular user with
                          privileges granted to the application
                          and data on a remote computer.
                       •  Nmap – is a free, open-source port
                          scanner available on both UNIX and
                          Windows. It has an optional graphical
                          front-end, NmapFE, and supports a
                          wide variety of scan types, each one
                          with different benefits and drawbacks.

                   Countermeasures

                       •  Display false banners to misguide the
                          attackers
                       •  Set up services to meet your
                          requirements, not necessarily
                          following default settings
                       •  Turn off unnecessary services on the
                          network host to limit the information
                          disclosure
                       •  Hiding File extension from web pages












                                                               420
   10   11   12   13   14   15   16   17   18   19   20