Prev | Current Page 45 | Next

Mark D. Spivey

"Practical Hacking Techniques and Countermeasures"

168.11.120 and I was only grabbing the banner information for port 21
(the FTP port).
Banner Identification  85
The results in this example determined that:
 Port 21 is open.
 The target is using Microsoft FTP Service, version 5.0.
The following syntax will attempt to grab the banner information from the
same target, port 25:
./banner 192.168.11.120 192.168.11.120 25 25
The result in this example determined that:
 Port 25 is open.
 The target is using Microsoft ESMTP MAIL Service, version 5.0.2172.1.
86  Practical Hacking Techniques and Countermeasures
Lab 7: Personal Social Engineering
Social Engineering Techniques: Dumpster Diving/Personnel
Prerequisites: None
Countermeasures: Enforced security policy, prosecution for violations,
training, document shredding.
Description: Information that companies consider sensitive is thrown out
daily in the normal garbage cans. Attackers can successfully retrieve
this data by literally climbing into the company dumpsters and pilfering
through the garbage. Information such as names, Social Security numbers,
addresses, phone numbers, account numbers, balances, and so
forth is thrown out every day somewhere. I personally know a nationally
recognized movie rental company that still uses carbon paper in
its fax machine. Once the roll is used up they simply throw the entire
roll in the dumpster. The information on that roll is priceless, including
names, addresses, account numbers, phone numbers, how much they
actually pay for their movies, and so forth.


Pages:
33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57