Network Scanning
Nmap NSE Scripts
Nmap Scripting Engine for service-specific enumeration and vuln checks.
Authorized testing only. Practice on systems you own, isolated labs, or targets with written permission. Unauthorized access is illegal.
When
After finding open ports — go deeper per protocol.
How
Use categories (safe, vuln, auth, discovery) and specific scripts.
Why
Turns Nmap from port scanner into enum platform.
Commands & usage
nmap --script smb-enum-shares,smb-enum-users -p 445 192.168.1.10
nmap --script 'http-* and not intrusive' -p 80,443 target
nmap --script-help smb-vuln*
Commands are educational examples. Adapt hosts, paths, and rates to your authorized scope.
Tags
Related in Network Scanning
Nmap
The definitive network mapper for host discovery, ports, and service/version detection.
Masscan
Asynchronous ultra-fast port scanner for large address spaces.
RustScan
Fast port discovery that pipes open ports into Nmap automatically.
naabu
Fast port scanner from ProjectDiscovery, pipeline-friendly.
AutoRecon
Multi-threaded automatic enumeration of services based on open ports.
Netdiscover
ARP reconnaissance tool for local network host discovery.