Enhancing Network Visibility and Security with Advanced Port Scanning Techniques

Network security is paramount in today’s digital landscape, where cyberthreats continue to evolve and pose significant risks. We propose a DPDK-based scanner based on a study on advanced port scanning techniques to improve network visibility and security. The traditional port scanning methods suffer...

Full description

Bibliographic Details
Main Authors: Rana Abu Bakar, Boonserm Kijsirikul
Format: Article
Language:English
Published: MDPI AG 2023-08-01
Series:Sensors
Subjects:
Online Access:https://www.mdpi.com/1424-8220/23/17/7541
_version_ 1797581883013332992
author Rana Abu Bakar
Boonserm Kijsirikul
author_facet Rana Abu Bakar
Boonserm Kijsirikul
author_sort Rana Abu Bakar
collection DOAJ
description Network security is paramount in today’s digital landscape, where cyberthreats continue to evolve and pose significant risks. We propose a DPDK-based scanner based on a study on advanced port scanning techniques to improve network visibility and security. The traditional port scanning methods suffer from speed, accuracy, and efficiency limitations, hindering effective threat detection and mitigation. In this paper, we develop and implement advanced techniques such as protocol-specific probes and evasive scan techniques to enhance the visibility and security of networks. We also evaluate network scanning performance and scalability using programmable hardware, including smart NICs and DPDK-based frameworks, along with in-network processing, data parallelization, and hardware acceleration. Additionally, we leverage application-level protocol parsing to accelerate network discovery and mapping, analyzing protocol-specific information. In our experimental evaluation, our proposed DPDK-based scanner demonstrated a significant improvement in target scanning speed, achieving a 2× speedup compared to other scanners in a target scanning environment. Furthermore, our scanner achieved a high accuracy rate of 99.5% in identifying open ports. Notably, our solution also exhibited a lower CPU and memory utilization, with an approximately 40% reduction compared to alternative scanners. These results highlight the effectiveness and efficiency of our proposed scanning techniques in enhancing network visibility and security. The outcomes of this research contribute to the field by providing insights and innovations to improve network security, identify vulnerabilities, and optimize network performance.
first_indexed 2024-03-10T23:12:55Z
format Article
id doaj.art-ef80e5c1f2804fe7b7ad98a8c202594c
institution Directory Open Access Journal
issn 1424-8220
language English
last_indexed 2024-03-10T23:12:55Z
publishDate 2023-08-01
publisher MDPI AG
record_format Article
series Sensors
spelling doaj.art-ef80e5c1f2804fe7b7ad98a8c202594c2023-11-19T08:51:16ZengMDPI AGSensors1424-82202023-08-012317754110.3390/s23177541Enhancing Network Visibility and Security with Advanced Port Scanning TechniquesRana Abu Bakar0Boonserm Kijsirikul1Department of Computer Engineering, Faculty of Engineering, Chulalongkorn University, Pathumwan, Bangkok 10330, ThailandDepartment of Computer Engineering, Faculty of Engineering, Chulalongkorn University, Pathumwan, Bangkok 10330, ThailandNetwork security is paramount in today’s digital landscape, where cyberthreats continue to evolve and pose significant risks. We propose a DPDK-based scanner based on a study on advanced port scanning techniques to improve network visibility and security. The traditional port scanning methods suffer from speed, accuracy, and efficiency limitations, hindering effective threat detection and mitigation. In this paper, we develop and implement advanced techniques such as protocol-specific probes and evasive scan techniques to enhance the visibility and security of networks. We also evaluate network scanning performance and scalability using programmable hardware, including smart NICs and DPDK-based frameworks, along with in-network processing, data parallelization, and hardware acceleration. Additionally, we leverage application-level protocol parsing to accelerate network discovery and mapping, analyzing protocol-specific information. In our experimental evaluation, our proposed DPDK-based scanner demonstrated a significant improvement in target scanning speed, achieving a 2× speedup compared to other scanners in a target scanning environment. Furthermore, our scanner achieved a high accuracy rate of 99.5% in identifying open ports. Notably, our solution also exhibited a lower CPU and memory utilization, with an approximately 40% reduction compared to alternative scanners. These results highlight the effectiveness and efficiency of our proposed scanning techniques in enhancing network visibility and security. The outcomes of this research contribute to the field by providing insights and innovations to improve network security, identify vulnerabilities, and optimize network performance.https://www.mdpi.com/1424-8220/23/17/7541network securityport scanningvulnerability assessmentintrusion detection systemnetwork visibility
spellingShingle Rana Abu Bakar
Boonserm Kijsirikul
Enhancing Network Visibility and Security with Advanced Port Scanning Techniques
Sensors
network security
port scanning
vulnerability assessment
intrusion detection system
network visibility
title Enhancing Network Visibility and Security with Advanced Port Scanning Techniques
title_full Enhancing Network Visibility and Security with Advanced Port Scanning Techniques
title_fullStr Enhancing Network Visibility and Security with Advanced Port Scanning Techniques
title_full_unstemmed Enhancing Network Visibility and Security with Advanced Port Scanning Techniques
title_short Enhancing Network Visibility and Security with Advanced Port Scanning Techniques
title_sort enhancing network visibility and security with advanced port scanning techniques
topic network security
port scanning
vulnerability assessment
intrusion detection system
network visibility
url https://www.mdpi.com/1424-8220/23/17/7541
work_keys_str_mv AT ranaabubakar enhancingnetworkvisibilityandsecuritywithadvancedportscanningtechniques
AT boonsermkijsirikul enhancingnetworkvisibilityandsecuritywithadvancedportscanningtechniques