官术网_书友最值得收藏!

Scanning HTTP services with Metasploit

Metasploit allows us to perform fingerprinting of various HTTP services. Additionally, Metasploit contains a large number of exploit modules targeting different kinds of web servers. Hence, scanning HTTP services not only allows for fingerprinting the web servers, but it builds a base of web server vulnerabilities that Metasploit can attack later. Let us use the http_version module and run it against the network as follows:

Let's execute the module after setting up all the necessary options such as RHOSTS and Threads as follows:

The http_version module from Metasploit has successfully fingerprinted various web server software and applications in the network. We will exploit some of these services in Chapter 3Exploitation and Gaining Access. We saw how we could fingerprint HTTP services, so let's try figuring out if we can scan its big brother, the HTTPS with Metasploit.

主站蜘蛛池模板: 桐柏县| 易门县| 黎川县| 重庆市| 灵寿县| 电白县| 漯河市| 铁岭市| 浦城县| 北辰区| 天长市| 苏尼特左旗| 靖边县| 绥棱县| 娄底市| 秦皇岛市| 和顺县| 义乌市| 长子县| 怀远县| 体育| 兴国县| 阜宁县| 淮阳县| 九江市| 盱眙县| 三门县| 长春市| 永德县| 宁南县| 中西区| 娱乐| 米脂县| 长沙县| 横峰县| 高阳县| 三穗县| 穆棱市| 湟中县| 日土县| 新乐市|