
Apunta directamente al producto OpenSSL en los servicios HTTP y HTTPS descubiertos. Esta comprobación no verifica OpenSSL 1.0.2-beta, que es vulnerable. Además, OpenSSL suele estar integrado en otro software y es mejor apuntar a cualquier servicio que responda mediante SSL.
nmap -A -T4 --xml targets
Recorrer los hosts objetivo con NMAP 6.3+ nmap -sV -p targethostPorts --xml --script=ssl-heartbleed.nse targethostmasscan targethosts -p0-65535 --rate 100000 --heartbleedpython3.exe bleed.py targethost -p targetport