Battalion icon indicating copy to clipboard operation
Battalion copied to clipboard

Add stealth options

Open theabraxas opened this issue 8 years ago • 0 comments

'Zero Touch' - Only non-intrusive tests (public APIs, 3rd party sources, DNS enumeration, etc.) 'Light Touch' - Identify minimal 'packets per site/IP per tool' to get usable data, disable 'noisy' tools 'Moderate Touch' - Allow most tools to run but only scan likely/probable ports, services, etc. This would be detectable but not 'clearly' an intrusive scan 'Heavy Touch' - Allow full port/service scanning on most/all discovered sites/IPs, enumerate things like Users and Plugins from WP sites, etc. This would clearly be seen on Firewalls and probably trigger notifications/IDS alerts.

Additional option(s): 'Scan' vs 'Attack' mode Scan will not trigger any discovered exploits or vulnerabilities or do anything to validate they will work Attack will attempt to trigger exploits like WP remote code, FTP, or other user/shell-gaining exploits.

We will want to probably have most of these be interactive or filtered in some way: 'Discovered WP RCE exploit, would you like to create an admin user on ?'

theabraxas avatar Oct 19 '16 19:10 theabraxas