Click to See Complete Forum and Search --> : auto security scanner made for windows, results valid for Linux???


andre
03-30-2002, 12:08 AM
This WebSite: http://grc.com/default.htm
has onsite tools that will check the security of your computer, the tool is meant to scan a windows box,(but I am running RH Linux). I ran it and got very good resluts (all stealth). Are these results any good, I mean do hackers scan for linux boxes diffrent that for windows? same or diffrent ports?

SuperHornet
03-30-2002, 02:20 AM
Finding ports is the same across platforms.
Its how the ports portmapper and OS handle the requests, this its where most exploits are found.

There are different attacks for different OS's

Ryeker
03-30-2002, 03:03 AM
A false sense of security is very BAD.

I don't know if GRC scans all your ports. It may only scan ports commonly used for Windows. Linux can have different ports open, and may not have been picked up by GRC.

Do a full 1-65535 scan and there's your answer. You are still not safe yet.

Choozo
03-30-2002, 03:01 PM
In general, using these online portscanning 'services' are a _bad_ idea.

1. Why do you (or rather, how can you) trust the result given back to you in the 'report'?
2. Running sites like this gives 'crackers' a ligit way of reaping IPs for 'wide-open' boxes (see also step 1 above).

Just my equivalent of 2 cents .... Cheers :)