Scanning
Scanning tools Cheatsheat
Nmap
Scan all ports
nmap 192.168.1.1 -p-┌──(root㉿INE)-[~]
└─# nmap demo.ine.local -p-
Starting Nmap 7.94SVN ( https://nmap.org ) at 2025-11-04 19:08 IST
Nmap scan report for demo.ine.local (192.233.140.3)
Host is up (0.000028s latency).
Not shown: 65532 closed tcp ports (reset)
PORT STATE SERVICE
6421/tcp open nim-wan
41288/tcp open unknown
55413/tcp open unknown
MAC Address: 02:42:C0:E9:8C:03 (Unknown)
Nmap done: 1 IP address (1 host up) scanned in 3.08 secondsService detection
nmap 192.168.1.1 -sVFaster scan with aggressive scan and on all ports (best of CTFs)
Scan if Ping/ ICMP is blocked
UDP Scan
Nmap scripts

Getting Help about the scripts

Running complete category of scripts
Running all scripts belonging to a name
Enumerating OS details with nmap script over smb
Enumerate NetBios
DNS service discovery
DNS brute force
common services DNS records
Http enumeration
Avoiding Firewall
Fraqmentation
mtu (Maximum transmitted Unit)
example evasion
Last updated