- Metasploit Bootcamp
- Nipun Jaswal
- 144字
- 2021-07-09 21:00:08
Scanning HTTP services with Metasploit
Metasploit allows us to perform fingerprinting of various HTTP services. Additionally, Metasploit contains a large number of exploit modules targeting different kinds of web servers. Hence, scanning HTTP services not only allows for fingerprinting the web servers, but it builds a base of web server vulnerabilities that Metasploit can attack later. Let us use the http_version module and run it against the network as follows:

Let's execute the module after setting up all the necessary options such as RHOSTS and Threads as follows:

The http_version module from Metasploit has successfully fingerprinted various web server software and applications in the network. We will exploit some of these services in Chapter 3, Exploitation and Gaining Access. We saw how we could fingerprint HTTP services, so let's try figuring out if we can scan its big brother, the HTTPS with Metasploit.
- Web安全與攻防入門很輕松(實戰超值版)
- 同態密碼學原理及算法
- 黑客攻防與網絡安全從新手到高手(絕招篇)
- 云原生安全技術實踐指南
- Instant Java Password and Authentication Security
- Advanced Penetration Testing for Highly:Secured Environments(Second Edition)
- 信息安全等級保護測評與整改指導手冊
- SQL Injection Strategies
- 編譯與反編譯技術實戰
- Hands-On Artificial Intelligence for Cybersecurity
- 企業數據安全防護指南
- 網絡對抗的前世今生
- ATT&CK視角下的紅藍對抗實戰指南
- 網絡安全設計
- Metasploit Bootcamp