π‘οΈFirewall Evasion
Overview
Common Evasion Techniques
1. Source Port Manipulation
# Scan using DNS source port
sudo nmap -g53 --max-retries=1 -Pn -p- --disable-arp-ping <target>
# Alternative syntax
sudo nmap --source-port 53 -p- <target>2. Decoy Scanning
3. Packet Fragmentation
4. Timing Manipulation
Lab Example: HTB Academy Hard
Advanced Evasion Techniques
1. IPv6 Evasion
2. Idle Scan (Zombie Scan)
3. Custom Packet Crafting
Firewall Detection
Identify Firewall Presence
Firewall Fingerprinting
Best Practices
Common Mistakes to Avoid
Tools and Resources
References
Last updated