Service Identification

From: John the Kiwi (john@johnthekiwi.com)
Date: Fri Sep 19 2003 - 14:02:39 EDT


Hi all

I have a remote database to pen test. It runs on port 2000 and has no
banners. I cannot establish a telnet session without it dropping me
instantly.

I would like to do one of two things for my customer:

Either sniff the records to a text file as they go to the client (I only
need to grab email addresses as they come to the client from the server)

or

Figure out how to connect to the database and extract the records

I'm not looking for a canned solution, more a quick summary of tools and
processes that I should be trying.

I'm sure this is covered a lot but I've searched the list and google and
haven't found any information on service identification when no banners
are present and it runs on a non standard port. I'm sure it's my search
strings but any pointers would be greatly appreciated.

John the Kiwi

-- 
---------------------------------------------------------------------------
----------------------------------------------------------------------------


This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:53:40 EDT