Nmap IDLE/IPID Scan Flashcards
1
Q
Define a Zombie
A
Intermediary host that allows interactions with their IPID to scan another host through incremental IDs
2
Q
IDLE/IPID Scan Step 1
A
Send successive SYN/ACK packets to identify zombie by incremental IPID
3
Q
IDLE/IPID Scan Step 2
A
Send SYN/ACK to the target spoofing the zombie IP
4
Q
IDLE/IPID Scan Step 3
A
Send SYN/ACK to the zombie and check whether IPID skipped an increment
5
Q
IDLE/IPDI Scan
A
nmap -sI [zombie] [target] -Pn