{"title":"Port Scanning Mitigation Strategies for Penetration Testing: Blue Team Perspective","authors":"R. Vadivel, S. Mayukha","doi":"10.1109/ICEET56468.2022.10007258","DOIUrl":null,"url":null,"abstract":"Port scanning technique is one of the most common kinds of system enumeration for hackers for active scanning. Active scanning is the initial attack of hackers to survey the system and then gather information based on open ports etc. After the information is ready, the hackers prepare an attack based on the available information. This often leads to loss of data or service for an enterprise or an individual. It might even be monetary loss. Penetration testing is like quality analysis where the pentesters carry out relative tasks to secure the system. So that attacks like port scanning are rendered useless for the hackers against the system. Taking defensive measurements against attacks are referred to as blue team activities. This paper covers the attack of port scanning and the defensive measures that can be taken against the port scanning attack to secure an enterprise or individual system.","PeriodicalId":241355,"journal":{"name":"2022 International Conference on Engineering and Emerging Technologies (ICEET)","volume":"215 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-10-27","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 International Conference on Engineering and Emerging Technologies (ICEET)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICEET56468.2022.10007258","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0
Abstract
Port scanning technique is one of the most common kinds of system enumeration for hackers for active scanning. Active scanning is the initial attack of hackers to survey the system and then gather information based on open ports etc. After the information is ready, the hackers prepare an attack based on the available information. This often leads to loss of data or service for an enterprise or an individual. It might even be monetary loss. Penetration testing is like quality analysis where the pentesters carry out relative tasks to secure the system. So that attacks like port scanning are rendered useless for the hackers against the system. Taking defensive measurements against attacks are referred to as blue team activities. This paper covers the attack of port scanning and the defensive measures that can be taken against the port scanning attack to secure an enterprise or individual system.