Ravindra BagaleCourses & study guides

37. Enumeration: NetBIOS, SMB, SNMP, LDAP, SMTP, NFS and DNS

Chala mitrano, Nmap ne ports ani services dakhavle – pan te fakt surface aahe. Enumeration (गणन / सूचीकरण) madhe aapan service madhun deeper details kadhto: usernames, shares, community strings, zone files, mounts. He CEH module cha mahatvacha bhag aahe – pan nehmi lab only. Pratyek protocol sathi attack idea ani tyacha bachav donhi shiku. Ghabru naka – step by step jaauya!

What you will learn in this chapter

  • Recon vs scanning vs enumeration – kay fark aahe
  • NetBIOS / SMB enumeration (nmblookup, smbclient, enum4linux, NetExec)
  • SNMP enumeration (snmpwalk, snmp-check) ani community string risk
  • LDAP basics (ldapsearch) – anonymous bind risk; AD detail pudhchya chapter madhe
  • SMTP user enum (VRFY / EXPN / RCPT) with telnet/nc
  • NFS enumeration (showmount, mount risks) ani root_squash defence
  • DNS enumeration (AXFR, dig/nslookup, dnsenum/fierce concepts)
  • Defence checklist – Raja/Rani Pune shop sathi

Lab scope

Run every command only against your host-only lab (Kali 192.168.56.10, Metasploitable 192.168.56.20, Chapter 18) or systems you own / have written permission for. Enumerating strangers' SMB, SNMP, LDAP, SMTP, NFS or DNS is illegal under the IT Act.

Concepts in this chapter

  1. 37.1What Is Enumeration and Why It Matters
  2. 37.2NetBIOS and SMB Enumeration
  3. 37.3SNMP Enumeration
  4. 37.4LDAP Enumeration
  5. 37.5SMTP Enumeration
  6. 37.6NFS Enumeration
  7. 37.7DNS Enumeration
  8. 37.8Putting It Together + Defence Checklist
  9. 37.9Red vs Blue, Project and Real Incidents

The chapter recap is at the end of the last concept page.