SlideShare a Scribd company logo
How do I use nmap on red to
scan blue?
IP Addresses
• Red : 10.0.2.11
• Blue : 10.0.2.12
1. Turn on red and blue VM’s. Log on as
‘student’ to both.
• On red : Execute the following command : ‘nmap –sP 10.0.2.0/24’
This will run a ping scan on our 10.0.2.0/24 network. This is where
our VM’s live on the network.
10.0.2.12 is blue
• From our screenshot we can see that our nmap scan found 10.0.2.11
( red ) and 10.0.2.12 ( blue )
• We can gather more information about blue by rescanning it with
different flags.
‘nmap –sV –T4 –F 10.0.2.12’
• -sV is a flag that scans for service version detection
• -T4 is a flag that scams for Timing ( T has many options ranging from
0-5)
• -F is a flag that scans the top 100 most common ports ( F for FAST)
The output is as follows :
From this scan we can derive the following :
• The host has a very low latency ( 0.00049s )
• The host has 97 ports that are closed ( Remember we only scanned
100 using the –F (fast) flag)
• Port 22 is open, running SSH ( the service ), and using OpenSSH 7.2 (
protocol 2.0 )
• Port 37 is open, Runnig the time service.
• Port 113 is open, and running the identity service.
For more Flags to use visit https://nmap.org/

More Related Content

ODP
Hunt For Blue Leader
PPTX
ODP
Network for amin
PPTX
04 18-2018--nmap port-80_blue_after_netcat
PPTX
N map presentation
PPTX
PPTX
Hanz and Franz
PPTX
Christchurch ISIG 27 oct2015
Hunt For Blue Leader
Network for amin
04 18-2018--nmap port-80_blue_after_netcat
N map presentation
Hanz and Franz
Christchurch ISIG 27 oct2015

Similar to 04 16-2018--nmap blue (20)

PDF
eLea4555555555555555555555555555555rnSecurity .pdf
PPTX
PDF
NMap 101 offline meetup by CyberForge Academy
PPTX
Null Delhi chapter - Feb 2019
PPTX
Recon with Nmap
PDF
Analysis of ESET Smart Security 6 personal firewall’s thresholds and detectio...
PDF
nmap-150817055204-lva1-app6891_٠٩٥٩٣٥ (1).pdf
PDF
Network Mapper (NMAP)
DOCX
Network scanning with nmap
PDF
O PODER DO NMAP ATRAVÉS DE SEUS COMANDOS.pdf
PPT
NMAP1.ppt
PPTX
Understanding NMAP
PDF
Nmap Hacking Guide
ODP
Scanning with nmap
PDF
Complete Nmap Scanning Commands CheatSheet by Hackopedia Utkarsh Thakur
PDF
Practical White Hat Hacker Training - Active Information Gathering
PDF
Nmap is a network scanner created by Gordon Lyon
PPTX
PPTX
Zen map
eLea4555555555555555555555555555555rnSecurity .pdf
NMap 101 offline meetup by CyberForge Academy
Null Delhi chapter - Feb 2019
Recon with Nmap
Analysis of ESET Smart Security 6 personal firewall’s thresholds and detectio...
nmap-150817055204-lva1-app6891_٠٩٥٩٣٥ (1).pdf
Network Mapper (NMAP)
Network scanning with nmap
O PODER DO NMAP ATRAVÉS DE SEUS COMANDOS.pdf
NMAP1.ppt
Understanding NMAP
Nmap Hacking Guide
Scanning with nmap
Complete Nmap Scanning Commands CheatSheet by Hackopedia Utkarsh Thakur
Practical White Hat Hacker Training - Active Information Gathering
Nmap is a network scanner created by Gordon Lyon
Zen map
Ad

More from Alexander Bitar (20)

PPTX
04 22-2018-tcpdump red-80
PPTX
04 18-2018--nmap blue
PPTX
04 18-2018--netcat port-80_blue
PPTX
04 12-2018-scp ubnetdef-to_blue
PPTX
04 12-2018-scp ubnetdef-to_blue_tmp
PPTX
04 09-2018--internal networkconnection
PPTX
04 09-2018--clone vm
PPTX
04 09-2018--ssh red-to_blue
PPTX
04 09-2018--ssh blue-to_red
PPTX
04 02-2018--Slackware Wire Shark Installation
PPTX
3 27-2018--update slackware
PPTX
3 26-2018--bridged networkcard
PPTX
3 26-2018--ping google
PPTX
3 11-2018--restore snapshot
PPTX
3 07-2018--add studenttosudo
PPTX
3 11-2018--change desktoptoxfce
PPTX
3 11-2018--take snapshot
PPTX
3 06-2018--add newuserstudent
PPTX
3 05-2018-install slackwarelinux
PPTX
3 05-2018-boot todesktop
04 22-2018-tcpdump red-80
04 18-2018--nmap blue
04 18-2018--netcat port-80_blue
04 12-2018-scp ubnetdef-to_blue
04 12-2018-scp ubnetdef-to_blue_tmp
04 09-2018--internal networkconnection
04 09-2018--clone vm
04 09-2018--ssh red-to_blue
04 09-2018--ssh blue-to_red
04 02-2018--Slackware Wire Shark Installation
3 27-2018--update slackware
3 26-2018--bridged networkcard
3 26-2018--ping google
3 11-2018--restore snapshot
3 07-2018--add studenttosudo
3 11-2018--change desktoptoxfce
3 11-2018--take snapshot
3 06-2018--add newuserstudent
3 05-2018-install slackwarelinux
3 05-2018-boot todesktop
Ad

Recently uploaded (20)

PDF
Network Security Unit 5.pdf for BCA BBA.
PDF
Mobile App Security Testing_ A Comprehensive Guide.pdf
PDF
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
PPTX
SOPHOS-XG Firewall Administrator PPT.pptx
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
PDF
Encapsulation theory and applications.pdf
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PDF
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
PPTX
Tartificialntelligence_presentation.pptx
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PDF
Unlocking AI with Model Context Protocol (MCP)
PDF
gpt5_lecture_notes_comprehensive_20250812015547.pdf
PDF
Spectral efficient network and resource selection model in 5G networks
PPTX
MYSQL Presentation for SQL database connectivity
PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PDF
Diabetes mellitus diagnosis method based random forest with bat algorithm
PPT
Teaching material agriculture food technology
PDF
Encapsulation_ Review paper, used for researhc scholars
PPTX
Group 1 Presentation -Planning and Decision Making .pptx
PDF
Machine learning based COVID-19 study performance prediction
Network Security Unit 5.pdf for BCA BBA.
Mobile App Security Testing_ A Comprehensive Guide.pdf
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
SOPHOS-XG Firewall Administrator PPT.pptx
Digital-Transformation-Roadmap-for-Companies.pptx
Encapsulation theory and applications.pdf
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
Tartificialntelligence_presentation.pptx
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
Unlocking AI with Model Context Protocol (MCP)
gpt5_lecture_notes_comprehensive_20250812015547.pdf
Spectral efficient network and resource selection model in 5G networks
MYSQL Presentation for SQL database connectivity
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
Diabetes mellitus diagnosis method based random forest with bat algorithm
Teaching material agriculture food technology
Encapsulation_ Review paper, used for researhc scholars
Group 1 Presentation -Planning and Decision Making .pptx
Machine learning based COVID-19 study performance prediction

04 16-2018--nmap blue

  • 1. How do I use nmap on red to scan blue?
  • 2. IP Addresses • Red : 10.0.2.11 • Blue : 10.0.2.12
  • 3. 1. Turn on red and blue VM’s. Log on as ‘student’ to both. • On red : Execute the following command : ‘nmap –sP 10.0.2.0/24’ This will run a ping scan on our 10.0.2.0/24 network. This is where our VM’s live on the network.
  • 4. 10.0.2.12 is blue • From our screenshot we can see that our nmap scan found 10.0.2.11 ( red ) and 10.0.2.12 ( blue ) • We can gather more information about blue by rescanning it with different flags.
  • 5. ‘nmap –sV –T4 –F 10.0.2.12’ • -sV is a flag that scans for service version detection • -T4 is a flag that scams for Timing ( T has many options ranging from 0-5) • -F is a flag that scans the top 100 most common ports ( F for FAST)
  • 6. The output is as follows :
  • 7. From this scan we can derive the following : • The host has a very low latency ( 0.00049s ) • The host has 97 ports that are closed ( Remember we only scanned 100 using the –F (fast) flag) • Port 22 is open, running SSH ( the service ), and using OpenSSH 7.2 ( protocol 2.0 ) • Port 37 is open, Runnig the time service. • Port 113 is open, and running the identity service.
  • 8. For more Flags to use visit https://nmap.org/