19.04.2013 Views

2KKUU7ita

2KKUU7ita

2KKUU7ita

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

136<br />

Part III: Hacking Network Hosts<br />

Figure 8-6:<br />

Information<br />

gathered<br />

about<br />

Exchange<br />

2003 via<br />

telnet.<br />

telnet<br />

You can telnet to hosts on the default telnet port (TCP port 23) to see<br />

whether you’re presented with a login prompt or any other information. Just<br />

enter the following line at the command prompt in Windows or UNIX:<br />

telnet ip_address<br />

You can telnet to other commonly used ports with these commands:<br />

✓ SMTP: telnet ip_address 25<br />

✓ HTTP: telnet ip_address 80<br />

✓ POP3: telnet ip_address 110<br />

Figure 8-6 shows specific version information about an Exchange 2003 server<br />

when telnetting to it on port 25. For help with telnet, simply enter telnet /?<br />

or telnet help for specific guidance on using the program.<br />

Countermeasures against banner-grabbing attacks<br />

The following steps can reduce the chance of banner-grabbing attacks:<br />

✓ If there isn’t a business need for services that offer banner information,<br />

disable those unused services on the network host.<br />

✓ If there isn’t a business need for the default banners, or if you can customize<br />

the banners, configure the network host’s application or operating<br />

system to either disable the banners or remove information from the<br />

banners that could give an attacker a leg up. Check with your specific<br />

vendor for information on how to do this.<br />

If you can customize your banners, check with your lawyer about adding a<br />

warning banner. It won’t stop banner grabbing but will show would-be intruders<br />

that the system is private and monitored (assuming it truly is). A warning<br />

banner may also help reduce your business liability in the event of a security<br />

breach. Here’s an example:

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!