当前位置:网站首页>6-4 vulnerability exploitation SSH banner information acquisition
6-4 vulnerability exploitation SSH banner information acquisition
2022-07-04 04:41:00 【Mountain Rabbit 1】
nmap obtain ssh Banner Information
nmap -sV -p 22 IP Address
commonly , We ssh stay 22 Port 1 is running
After the detection is completed , There will be banner Information , Corresponding to the remote system release ubuntu, And version number
nmap -sV -p 22 192.168.0.104
We made changes before , So he won't detect the remote system banner Information
Let's revise it back , Then detect
cd /etc/ssh/
sudo gedit sshd_config
ctrl+f, Input banner
ad locum , We will
debianBanner no
Comment out , preservation , Click Close
service ssh restart
To restart ssh service , This configuration will take effect
We go back to kali among , Re detect
nmap -sV -p 22 192.168.0.104
You can see the banner The information is different
Metasploit obtain ssh Banner Information
use auxiliary/scanner/ssh/ssh_version
show options
set rhosts 192.168.0.104
run
After detection , The corresponding banner Information , Our operating system and running version number
msfconsole
//metasploit It will start as a terminal
metasploit It is an integrated vulnerability development and utilization , A framework for permission maintenance , So it has a lot to load , The speed at which it starts , It will naturally , A lot slower
nc obtain ssh Banner Information
Actually , We can also use small tools to get the corresponding Banner Information
nc IP Address 22
If ssh Open other ports , We 22 Port no. , It can be changed to the default port
For the operating system , We can take some protective measures , Make our server not appear , Corresponding Banner Information , Operating system and category
To configure ssh avoid Banner Information
stay ssh The configuration file sshd_config Add a new line .DebianBanner no Scan again and find no operating system information .
nmap -p 22 -sV 192.168.0.104
In this way , Evaded our Banner Information , Caught , So as to obtain the operation ssh The operating system of the service
边栏推荐
- Correct the classpath of your application so that it contains a single, compatible version of com. go
- I.MX6U-ALPHA开发板(C语言版本LED驱动实验)
- @Feignclient comments and parameters
- Architecture practice camp - graduation project of module 9 of phase 6
- Distributed cap theory
- Asahi Kasei participated in the 5th China International Import Expo (5th ciie) for the first time
- Correct the classpath of your application so that it contains a single, compatible version of com.go
- [security attack and Defense] how much do you know about serialization and deserialization?
- Balloon punching and Boolean operation problems (extremely difficult)
- Exploration and practice of eventbridge in the field of SaaS enterprise integration
猜你喜欢
Zhengzhou zhengqingyuan Culture Communication Co., Ltd.: seven marketing skills for small enterprises
Intersection traffic priority, illustration of intersection traffic rules
Statistical genetics: Chapter 3, population genetics
UnicodeDecodeError: ‘gbk‘ codec can‘t decode byte 0x98 in position 1093: illegal multibyte sequence
Redis: operation command for collecting set type data
The "functional art" jointly created by Bolang and Virgil abloh in 2021 to commemorate the 100th anniversary of Bolang brand will debut during the exhibition of abloh's works in the museum
Architecture training graduation design + summary
EventBridge 在 SaaS 企业集成领域的探索与实践
Architecture practice camp - graduation project of module 9 of phase 6
GUI application: socket network chat room
随机推荐
Leader: who uses redis expired monitoring to close orders and get out of here!
分布式CAP理论
1. Mx6u-alpha development board (LED drive experiment in C language version)
I.MX6U-ALPHA开发板(C语言版本LED驱动实验)
CRS-4013: This command is not supported in a single-node configuration.
Main applications of TDK lambda power supply
疫情远程办公经验分享| 社区征文
Change the background color of Kivy tutorial (tutorial includes source code)
Balloon punching and Boolean operation problems (extremely difficult)
Correct the classpath of your application so that it contains a single, compatible version of com.go
Deep parsing structured exception handling (SEH) - by Matt Pietrek
How do good test / development programmers practice? Where to go
软件设计文档示例模板 - 学习/实践
优秀的测试/开发程序员是怎么修炼的?该往哪走......
RAC delete damaged disk group
RPC Technology
通过dd创建asm disk
The interactive solution of JS and app in the H5 page embedded in app (parameters can be transferred and callbacks can be made)
Emlog用户注册插件 价值80元
Beipiao programmer, 20K monthly salary, 15W a year, normal?