I have included a "teaser" screenshot below. Note that the latest code is always available from the InProtect Sourceforge SVN repo (but that should be considered "alpha" only)...since we are consistently making changes, fixes, tests and updates...
I am also entertaining the idea of replacing / augmenting the nmap functionality with unicornscan (sice unicorns are fast! <3 Unicorns), let me know what your thoughts / concerns / comments are.
Cheers,
JJC
2 comments:
I agree that Nmap should be replaced with Unicornscan, because accuracy is overrated. Unicornscan is faster since it doesn't waste time with drop detection, retransmission, congestion control, and similar things which only matter if you care about accurate results. A similar speed-at-all-costs scanner you might want to consider is Scanrand.
Well, in this instance accuracy is certainly overrated, since we can followup and hit it with a nessus scan. Really the NMap / Unicorscan is used as a quick information gathering tool. That said, I think that Unicornscan throttled properly and using p0f can be just as accurate as NMap. I'll be checking out scanrand a bit more, but it looks like a useful tool....at first glance on feature that is interesting is the capability to throttle based on bandwidth rather than packet rate.
Post a Comment