Enhancing Network Visibility and Security with Advanced Port Scanning Techniques
Network security is paramount in today’s digital landscape, where cyberthreats continue to evolve and pose significant risks. We propose a DPDK-based scanner based on a study on advanced port scanning techniques to improve network visibility and security. The traditional port scanning methods suffer...
Main Authors: | , |
---|---|
Format: | Article |
Language: | English |
Published: |
MDPI AG
2023-08-01
|
Series: | Sensors |
Subjects: | |
Online Access: | https://www.mdpi.com/1424-8220/23/17/7541 |
_version_ | 1797581883013332992 |
---|---|
author | Rana Abu Bakar Boonserm Kijsirikul |
author_facet | Rana Abu Bakar Boonserm Kijsirikul |
author_sort | Rana Abu Bakar |
collection | DOAJ |
description | Network security is paramount in today’s digital landscape, where cyberthreats continue to evolve and pose significant risks. We propose a DPDK-based scanner based on a study on advanced port scanning techniques to improve network visibility and security. The traditional port scanning methods suffer from speed, accuracy, and efficiency limitations, hindering effective threat detection and mitigation. In this paper, we develop and implement advanced techniques such as protocol-specific probes and evasive scan techniques to enhance the visibility and security of networks. We also evaluate network scanning performance and scalability using programmable hardware, including smart NICs and DPDK-based frameworks, along with in-network processing, data parallelization, and hardware acceleration. Additionally, we leverage application-level protocol parsing to accelerate network discovery and mapping, analyzing protocol-specific information. In our experimental evaluation, our proposed DPDK-based scanner demonstrated a significant improvement in target scanning speed, achieving a 2× speedup compared to other scanners in a target scanning environment. Furthermore, our scanner achieved a high accuracy rate of 99.5% in identifying open ports. Notably, our solution also exhibited a lower CPU and memory utilization, with an approximately 40% reduction compared to alternative scanners. These results highlight the effectiveness and efficiency of our proposed scanning techniques in enhancing network visibility and security. The outcomes of this research contribute to the field by providing insights and innovations to improve network security, identify vulnerabilities, and optimize network performance. |
first_indexed | 2024-03-10T23:12:55Z |
format | Article |
id | doaj.art-ef80e5c1f2804fe7b7ad98a8c202594c |
institution | Directory Open Access Journal |
issn | 1424-8220 |
language | English |
last_indexed | 2024-03-10T23:12:55Z |
publishDate | 2023-08-01 |
publisher | MDPI AG |
record_format | Article |
series | Sensors |
spelling | doaj.art-ef80e5c1f2804fe7b7ad98a8c202594c2023-11-19T08:51:16ZengMDPI AGSensors1424-82202023-08-012317754110.3390/s23177541Enhancing Network Visibility and Security with Advanced Port Scanning TechniquesRana Abu Bakar0Boonserm Kijsirikul1Department of Computer Engineering, Faculty of Engineering, Chulalongkorn University, Pathumwan, Bangkok 10330, ThailandDepartment of Computer Engineering, Faculty of Engineering, Chulalongkorn University, Pathumwan, Bangkok 10330, ThailandNetwork security is paramount in today’s digital landscape, where cyberthreats continue to evolve and pose significant risks. We propose a DPDK-based scanner based on a study on advanced port scanning techniques to improve network visibility and security. The traditional port scanning methods suffer from speed, accuracy, and efficiency limitations, hindering effective threat detection and mitigation. In this paper, we develop and implement advanced techniques such as protocol-specific probes and evasive scan techniques to enhance the visibility and security of networks. We also evaluate network scanning performance and scalability using programmable hardware, including smart NICs and DPDK-based frameworks, along with in-network processing, data parallelization, and hardware acceleration. Additionally, we leverage application-level protocol parsing to accelerate network discovery and mapping, analyzing protocol-specific information. In our experimental evaluation, our proposed DPDK-based scanner demonstrated a significant improvement in target scanning speed, achieving a 2× speedup compared to other scanners in a target scanning environment. Furthermore, our scanner achieved a high accuracy rate of 99.5% in identifying open ports. Notably, our solution also exhibited a lower CPU and memory utilization, with an approximately 40% reduction compared to alternative scanners. These results highlight the effectiveness and efficiency of our proposed scanning techniques in enhancing network visibility and security. The outcomes of this research contribute to the field by providing insights and innovations to improve network security, identify vulnerabilities, and optimize network performance.https://www.mdpi.com/1424-8220/23/17/7541network securityport scanningvulnerability assessmentintrusion detection systemnetwork visibility |
spellingShingle | Rana Abu Bakar Boonserm Kijsirikul Enhancing Network Visibility and Security with Advanced Port Scanning Techniques Sensors network security port scanning vulnerability assessment intrusion detection system network visibility |
title | Enhancing Network Visibility and Security with Advanced Port Scanning Techniques |
title_full | Enhancing Network Visibility and Security with Advanced Port Scanning Techniques |
title_fullStr | Enhancing Network Visibility and Security with Advanced Port Scanning Techniques |
title_full_unstemmed | Enhancing Network Visibility and Security with Advanced Port Scanning Techniques |
title_short | Enhancing Network Visibility and Security with Advanced Port Scanning Techniques |
title_sort | enhancing network visibility and security with advanced port scanning techniques |
topic | network security port scanning vulnerability assessment intrusion detection system network visibility |
url | https://www.mdpi.com/1424-8220/23/17/7541 |
work_keys_str_mv | AT ranaabubakar enhancingnetworkvisibilityandsecuritywithadvancedportscanningtechniques AT boonsermkijsirikul enhancingnetworkvisibilityandsecuritywithadvancedportscanningtechniques |