The Nmap Project has officially released version 7.96 of its powerful network scanning tool.
The release introduces a suite of technical enhancements, including dramatically faster DNS resolution, new NSE (Nmap Scripting Engine), and numerous bug fixes that further enhance Nmap’s reputation as an essential tool for network discovery and security auditing.
Nmap 7.96 has several upgraded libraries, including OpenSSL 3.0.16, Lua 5.4.7, libssh2 1.11.1, libpcap 1.10.5, and libpcre2 10.45.
These updates provide improved performance and better compatibility with modern systems, ensuring that security professionals have access to the latest technologies for network reconnaissance and vulnerability assessment.
One of the most significant improvements in this release is the implementation of parallel DNS lookups.
As noted in the changelog, “Nmap now performs forward DNS lookups in parallel, using the same engine that has been reliably performing reverse-DNS lookups for nearly a decade”.
This enhancement dramatically accelerates scanning operations involving large hostname lists.
In testing, resolving one million website names to both IPv4 and IPv6 addresses took just over an hour, compared to the previous system’s 49 hours for the same dataset.
The Windows version of Nmap 7.96 now includes Npcap 1.82, upgrading from version 1.79.
This latest version of the packet capture library brings faster packet injection capabilities, VLAN header capture support, and compatibility with SR-IOV adapters.
The update resolves several issues, including problems with VLAN tagging and packet size verification. For scripting enthusiasts, Nmap 7.96 introduces three new NSE scripts, bringing the total to 612:
The Zenmap GUI has received a visual upgrade with the addition of dark mode, accessible via “Profile->Toggle Dark Mode” or by configuring the window::dark_mode parameter in zenmap.conf.
This feature enhances usability in low-light environments and reduces eye strain during extended scanning sessions.
Nmap 7.96 introduces a major enhancement to its scanning capabilities with a complete overhaul of DNS resolution. The key improvements are:
-n (disable DNS), -R (always resolve), --system-dns (use system resolver), and --dns-servers (specify custom DNS servers). These options help tailor scanning speed and data collection to specific needs.These enhancements make Nmap 7.96 much faster and more robust for network discovery, particularly when scanning large numbers of hosts or domains.
This release addresses several long-standing issues, including fixes for the IOCP Nsock engine on Windows and corrections for TCP Connect scans (-sT) that would incorrectly show “filtered” instead of “closed” ports.
Nmap can now scan IP protocol 255 and allows users to specify targets both on the command line and in input files with -iL-a capability previously unavailable.
Ncat has also been improved, with changes to its default connection handling mode and the addition of a -q option that delays exit after EOF on standard input, making it more compatible with traditional netcat implementations.
Security professionals can download Nmap 7.96 from the official website (https://nmap.org/download) in various formats, including Windows installers, Linux RPMs, macOS packages, and source code distributions.
With this release, Nmap continues to evolve as an indispensable tool for network administrators, security auditors, and ethical hackers seeking to discover network vulnerabilities and strengthen their defensive posture.
Vulnerability Attack Simulation on How Hackers Rapidly Probe Websites for Entry Points – Free Webinar
Your SaaS estate M365, Salesforce, Workday, Slack, hundreds of others is a sprawl of misconfigurations,…
DSPM finds sensitive data you didn’t know you had, classifies it, maps who can reach…
Open-source packages are meant to save developers time. In the GemStuffer campaign, that trust became…
Google has released an important Chrome 153 security update that fixes 42 vulnerabilities across the…
The Cybersecurity and Infrastructure Security Agency (CISA) and the National Institute of Standards and Technology…
CISA and five international cybersecurity agencies have released detailed guidance describing 17 common techniques hackers…