5 msgLarge update/recode of NSE (test please)
2 msgNmap/Zenmap 4.62-test8 packages for Mac OS X
1 msgSilent Installation?
4 msgnmap error
2 msg[PATCH] Fix IPv6 scanning against link-local ad...
2 msgPATCH: nsock_core.c / do_actual_read() / recv v...
3 msgUnofficial WinPcap Installer Issue
5 msgThe difficulty of running Nmap with privileges ...
1 msgScript scan error
1 msgMac OS X VPN Client
3 msgDifferent scan ranges yield different results
1 msgRFE: Pseudo target for local network(s)
1 msgseclists.org RSS feeds, now with message excerpts
1 msgnmap_command_path patch
1 msgNSE Idea: Script to show SSHD host fingerprints

nmap issue
\ Chris Detzel (15 May 2008)
. \ Aaron Leininger (15 May 2008)
. . \ Chris Detzel (15 May 2008)
. \ Gianluca Varenni (16 May 2008)
. . \ Chris Detzel (16 May 2008)
. . \ Fyodor (16 May 2008)
. . . \ David Fifield (17 May 2008)
. \ Mike pattrick (16 May 2008)
. . \ Brandon Enright (16 May 2008)
. . . \ Gianluca Varenni (19 May 2008)
. . . \ Rob Nicholls (21 May 2008)
. . . \ Rob Nicholls (21 May 2008)
. . . . \ Rob Nicholls (22 May 2008)
. . . . . \ Fyodor (28 May 2008)
. \ Gianluca Varenni (16 May 2008)
. . \ Rob Nicholls (17 May 2008)
. . . \ bensonk (17 May 2008)
. . . . \ Rob Nicholls (18 May 2008)
. . . . . \ bensonk (18 May 2008)

2 msgnsock_connect_ssl: bad version identification?
1 msgMinor bug in nmap_dns.cc
2 msgconfigure fails to detect g++
2 msghostname bug by scannig a server.
Subject:Re: nmap issue
Group:Nmap-dev
From:David Fifield
Date:17 May 2008


 
On Fri, May 16, 2008 at 02:52:36PM -0700, Fyodor wrote:
> Here is one idea for potentially fixing this:
>
> 1) We can compile Nmap with a "manifest" embedded with the
> requestedExecutionLevel set to 'highestAvailable' so that UAC
> confirmation will be requested at startup if the user is an admin.
>
> 2) We need to then test if the user has proper admin privileges. If
> so, we go forward as normal. If not, we set o.isr00t to 0 just as
> we would do if run with --unprivileged. Maybe we should print a
> warning in this case (at least in verbose mode) because Nmap really
> is crippled in this situation.

It would be cool to have a general intelligent check for admin
privileges. Then the same mechanism could check for read/write of
/dev/bpf* devices and enforce --send-eth if necessary on BSDs.

http://seclists.org/nmap-dev/2008/q2/0268.html

David Fifield

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://SecLists.Org


© 2004-2008 readlist.com