Page 15 - CPTE_Prep_Guide_Sample
P. 15
• Telnet – a Windows built-in (must
enable it). It probes HTTP servers to
determine the server field in the HTTP
response header. It can probe any
running service on a target host. You
can log in as a regular user with
privileges granted to the application
and data on a remote computer.
• Nmap – is a free, open-source port
scanner available on both UNIX and
Windows. It has an optional graphical
front-end, NmapFE, and supports a
wide variety of scan types, each one
with different benefits and drawbacks.
Countermeasures
• Display false banners to misguide the
attackers
• Set up services to meet your
requirements, not necessarily
following default settings
• Turn off unnecessary services on the
network host to limit the information
disclosure
• Hiding File extension from web pages
420