37. Enumeration: NetBIOS, SMB, SNMP, LDAP, SMTP, NFS and DNS
Chala mitrano, Nmap ne ports ani services dakhavle – pan te fakt surface aahe. Enumeration (गणन / सूचीकरण) madhe aapan service madhun deeper details kadhto: usernames, shares, community strings, zone files, mounts. He CEH module cha mahatvacha bhag aahe – pan nehmi lab only. Pratyek protocol sathi attack idea ani tyacha bachav donhi shiku. Ghabru naka – step by step jaauya!
What you will learn in this chapter
- Recon vs scanning vs enumeration – kay fark aahe
- NetBIOS / SMB enumeration (nmblookup, smbclient, enum4linux, NetExec)
- SNMP enumeration (snmpwalk, snmp-check) ani community string risk
- LDAP basics (ldapsearch) – anonymous bind risk; AD detail pudhchya chapter madhe
- SMTP user enum (VRFY / EXPN / RCPT) with telnet/nc
- NFS enumeration (showmount, mount risks) ani root_squash defence
- DNS enumeration (AXFR, dig/nslookup, dnsenum/fierce concepts)
- Defence checklist – Raja/Rani Pune shop sathi
Lab scope
Run every command only against your host-only lab (Kali 192.168.56.10, Metasploitable 192.168.56.20, Chapter 18) or systems you own / have written permission for. Enumerating strangers' SMB, SNMP, LDAP, SMTP, NFS or DNS is illegal under the IT Act.
Concepts in this chapter
- 37.1What Is Enumeration and Why It Matters
- 37.2NetBIOS and SMB Enumeration
- 37.3SNMP Enumeration
- 37.4LDAP Enumeration
- 37.5SMTP Enumeration
- 37.6NFS Enumeration
- 37.7DNS Enumeration
- 37.8Putting It Together + Defence Checklist
- 37.9Red vs Blue, Project and Real Incidents
The chapter recap is at the end of the last concept page.