Automated network port change detection. Scan17 provides a solution to the question:
So your CTO decides to outsource firewall management - and the vendor carelessly leaves a network port open, exposing your production database. How does your team find out before an attacker?
Think of it as nmap port scan diff-ing. If a network port goes from closed to open you get an email or webhook alert. There is a REST API for automated workflows and privately hosted engines will be supported for some plans. There is a wait-list form on the website if you want to stay in the loop.
If you work in infosec / cyber security and are interested in being an early product designer / beta tester, let's chat! See my profile for how to get in touch.
If anyone is curious on how this can be abused, here's my "There's no place like 169.254.169.254 - (Ab)using cloud metadata URLs" slides [1] and talk [2] from 2019.
tl;dr - misconfigured reverse proxies allowed cloud metadata URL access across the bigger cloud providers.
I made it free to the HN community a few years back [1]. There is a paid interactive lab portion (details in the repo) if you are looking for hands-on experience.
Book Overview
This book is packed with practical and real world examples of SSH tunneling and port redirection in multiple realistic scenarios. It walks you through the basics of SSH tunneling (both local and remote port forwards), SOCKS proxies, port redirection, and how to utilize them with other tools like proxychains, nmap, Metasploit, and web browsers.
Advanced topics included SSHing through 4 jump boxes, throwing exploits through SSH tunnels, scanning assets using proxychains and Metasploit's Meterpreter, browsing the Internet through a SOCKS proxy, utilizing proxychains and nmap to scan targets, and leveraging Metasploit's Meterpreter portfwd command.
I made this free to the HN community a few years back [1], but decided to make it available to everyone via a GitHub repo. There is a paid interactive lab portion (details in the repo) if you are looking for hands-on experience.
Book Overview
This book is packed with practical and real world examples of SSH tunneling and port redirection in multiple realistic scenarios. It walks you through the basics of SSH tunneling (both local and remote port forwards), SOCKS proxies, port redirection, and how to utilize them with other tools like proxychains, nmap, Metasploit, and web browsers.
Advanced topics included SSHing through 4 jump boxes, throwing exploits through SSH tunnels, scanning assets using proxychains and Metasploit's Meterpreter, browsing the Internet through a SOCKS proxy, utilizing proxychains and nmap to scan targets, and leveraging Metasploit's Meterpreter portfwd command.
Glad to see more open source options (I develop and maintain Scantron https://github.com/rackerlabs/scantron/) when it comes to network scanning! Appreciate your contribution to the community.
So you're not using nmap under the hood?
What's the largest IP space you've tested it on so far?
Did you purchase it individually? Do you recall what you paid for it? In the blog, I linked to a YouTube video that said they retailed for $300-400. I believe it, but would like to hear confirmation.