[memo]granpark.rb security meetup


exploit : invalid input
exploit code : program to input invalid value : a web page which has many exploit codes

port scan

send TCP SYN packet
response SYN/ACK → open
response RST or no reaction → close

Get version information

/* Open SSH */
$ telnet 22
Connected to
Escape character is '^]'.
SSH-2.0-OpenSSH_6.0p1 Debian-3ubuntu1

/* Apache */
$telnet 80

nmap comand

sudo nmap -sSVC -0
-sS : SYN scan
-sV : Research service and version
-sC: Research detail info with service
  Use custom script (LUA)
-O: Assume OS

