There exist many different techniques using the TCP protocol for determining if a port is open on a
server, such as ACK, F...
Upcoming SlideShare
Loading in...5
×

Nmap flags table

77

Published on

0 Comments
0 Likes
Statistics
Notes
  • Be the first to comment

  • Be the first to like this

No Downloads
Views
Total Views
77
On Slideshare
0
From Embeds
0
Number of Embeds
0
Actions
Shares
0
Downloads
5
Comments
0
Likes
0
Embeds 0
No embeds

No notes for slide

Nmap flags table

  1. 1. There exist many different techniques using the TCP protocol for determining if a port is open on a server, such as ACK, FIN, Maimon, NULL, TCP SYN, TCP Connect, Window and Christmas Tree scans. The TCP protocol has 8 flags in its frame header. These flags can be used to identify the scan type. Attacker: Scans FIN SYN connect() PSH ACK URG ECE CWR URG ECE CWR URG ECE CWR 1st SYN RST 1st FIN 1st XMAS 1st 1st 1st NULL Maimon 1st 1st ACK 1st Window 1st Victim: Scans FIN SYN RST 2nd 2nd 2nd SYN 2nd 2nd FIN 2nd XMAS 2nd NULL 2nd Maimon 2nd ACK 2nd Window 2nd connect() Attacker: Scans connect() SYN FIN XMAS NULL Maimon ACK Window FIN SYN RST PSH PSH ACK ACK 3rd

×