Crimson — AppSec firearm IV
4 min readAug 23, 2022
Guidelines for the crimson_IPcon module usage.
INTRODUCTION
This article will describe how to use the crimson_IPcon
most optimally.
The module is used for reconnaissance and vulnerability scanning using IP.
It is good to start the module before the Nessus. It is much quicker and free.
CRIMSON IPCON GUIDELINES
Issue a single IP address(-i
) or the file with the IP addresses(-l
) to start.
#EXAMPLE FILE WITH IP ADDRESSES FOR -l FLAG
10.10.10.10
10.10.10.11
10.10.10.12
-t
flag stands for TCP scanning (1–65535).
First Rustscan is checking which ports are opened, and then output is piped to the Nmap which does the banner grabbing.
-u
flag stands for UPD scanning (only top 1000 ports).
Nmap with banner grabbing.
-p
flag stands for ICMP sweep.