How to Identify Network Vulnerabilities with NetworkRecon.ps1
ID: 8bfd5ce5-a851-5c05-9ce4-2d5739630491
STIX ID: report--8bfd5ce5-a851-5c05-9ce4-2d5739630491
Feed Name: Black Hills Infosec Blog
This write-up presents a PowerShell-based network reconnaissance toolkit that captures and analyzes network traffic to identify the presence of potentially vulnerable protocols and misconfigurations (CDP, DTP, VTP, LLDP, mDNS, NBNS, LLMNR, HSRP, OSPF, VRRP) which can enable information gathering, credential capture, VLAN hopping, or MITM attacks; it documents three primary functions for neighbor analysis, trace capture (.cap/.etl), and live traffic analysis, notes platform limitations, and links to the full script and extended SANS whitepaper.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
