Nmap

nmap cheatsheet

Tool

Scope

nmap <host list>
nmap -6 <host list>
nmap -iL <path to file>.txt
nmap <host list> --exclude <host list>

Host discovery

-sL    No Scan. List targets only
-sn    Disable port scanning. Host discovery only.
-Pn    Disable host discovery. Port scan only.
-PS    TCP SYN discovery on port x. Port 80 by default
-PA    TCP ACK discovery on port x. Port 80 by default
-PU    Port 40125 by default
-PR    ARP discovery on local network
-n     Never do DNS resolution

Scan options

Version & OS

Ports

Evasion

Output

Templates

Common services slow

Service detailed scan

Full scan

Light scan

Machine discovery

Machine discovery no scan

Last updated