logoalt Hacker News

rendxlast Sunday at 7:00 AM1 replyview on HN

Even without CT, services on standard ports will quickly be discovered on IPv4.

> On a computer with a gigabit connection, ZMap can scan the entire public IPv4 address space on a single port in under 45 minutes.


Replies

straight-shootalast Sunday at 12:59 PM

This may discover services, but not hostnames. If the server does not disclose them (e.g. in the certificate used on the IP host), an attacker doesn't have much further to go on.