Host Discovery
ARP Discovery
# arp-scan:
sudo arp-scan -I tap0 <IP>/24
# Nmap:
sudo nmap -n -sn <IP>/24 -PR -oG - | awk '/Up$/{print $2}'ICMP Discovery
# fping: Ping sweep
fping -a -g <IP>/24 2> /dev/nul
# fping: sweep, generate statistics and list alive hosts
fping -asgq <CIDR>/<IP>
# Nmap: Ping sweep and save to file
nmap -n -sn <IP>/24 -oG - | awk '/Up$/{print $2}' >> nmapresults.txtPing and ARP scan (combined)
fping -a -g <IP> 2> /dev/null | sudo nmap -n -sn <IP> -PR -oG - | awk '/Up$/{print $2}' | uniq -u > AliveHosts.txtTCP SYN Scan
TCP ACK Scan
UDP Ping Scan
Reverse DNS Lookup
Additional Nmap Parameters
Parameter
Description
Last updated