Cargando…

Enhancing Network Visibility and Security with Advanced Port Scanning Techniques

Network security is paramount in today’s digital landscape, where cyberthreats continue to evolve and pose significant risks. We propose a DPDK-based scanner based on a study on advanced port scanning techniques to improve network visibility and security. The traditional port scanning methods suffer...

Descripción completa

Detalles Bibliográficos
Autores principales: Abu Bakar, Rana, Kijsirikul, Boonserm
Formato: Online Artículo Texto
Lenguaje:English
Publicado: MDPI 2023
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC10490701/
https://www.ncbi.nlm.nih.gov/pubmed/37687997
http://dx.doi.org/10.3390/s23177541
_version_ 1785103901360390144
author Abu Bakar, Rana
Kijsirikul, Boonserm
author_facet Abu Bakar, Rana
Kijsirikul, Boonserm
author_sort Abu Bakar, Rana
collection PubMed
description Network security is paramount in today’s digital landscape, where cyberthreats continue to evolve and pose significant risks. We propose a DPDK-based scanner based on a study on advanced port scanning techniques to improve network visibility and security. The traditional port scanning methods suffer from speed, accuracy, and efficiency limitations, hindering effective threat detection and mitigation. In this paper, we develop and implement advanced techniques such as protocol-specific probes and evasive scan techniques to enhance the visibility and security of networks. We also evaluate network scanning performance and scalability using programmable hardware, including smart NICs and DPDK-based frameworks, along with in-network processing, data parallelization, and hardware acceleration. Additionally, we leverage application-level protocol parsing to accelerate network discovery and mapping, analyzing protocol-specific information. In our experimental evaluation, our proposed DPDK-based scanner demonstrated a significant improvement in target scanning speed, achieving a 2× speedup compared to other scanners in a target scanning environment. Furthermore, our scanner achieved a high accuracy rate of 99.5% in identifying open ports. Notably, our solution also exhibited a lower CPU and memory utilization, with an approximately 40% reduction compared to alternative scanners. These results highlight the effectiveness and efficiency of our proposed scanning techniques in enhancing network visibility and security. The outcomes of this research contribute to the field by providing insights and innovations to improve network security, identify vulnerabilities, and optimize network performance.
format Online
Article
Text
id pubmed-10490701
institution National Center for Biotechnology Information
language English
publishDate 2023
publisher MDPI
record_format MEDLINE/PubMed
spelling pubmed-104907012023-09-09 Enhancing Network Visibility and Security with Advanced Port Scanning Techniques Abu Bakar, Rana Kijsirikul, Boonserm Sensors (Basel) Article Network security is paramount in today’s digital landscape, where cyberthreats continue to evolve and pose significant risks. We propose a DPDK-based scanner based on a study on advanced port scanning techniques to improve network visibility and security. The traditional port scanning methods suffer from speed, accuracy, and efficiency limitations, hindering effective threat detection and mitigation. In this paper, we develop and implement advanced techniques such as protocol-specific probes and evasive scan techniques to enhance the visibility and security of networks. We also evaluate network scanning performance and scalability using programmable hardware, including smart NICs and DPDK-based frameworks, along with in-network processing, data parallelization, and hardware acceleration. Additionally, we leverage application-level protocol parsing to accelerate network discovery and mapping, analyzing protocol-specific information. In our experimental evaluation, our proposed DPDK-based scanner demonstrated a significant improvement in target scanning speed, achieving a 2× speedup compared to other scanners in a target scanning environment. Furthermore, our scanner achieved a high accuracy rate of 99.5% in identifying open ports. Notably, our solution also exhibited a lower CPU and memory utilization, with an approximately 40% reduction compared to alternative scanners. These results highlight the effectiveness and efficiency of our proposed scanning techniques in enhancing network visibility and security. The outcomes of this research contribute to the field by providing insights and innovations to improve network security, identify vulnerabilities, and optimize network performance. MDPI 2023-08-30 /pmc/articles/PMC10490701/ /pubmed/37687997 http://dx.doi.org/10.3390/s23177541 Text en © 2023 by the authors. https://creativecommons.org/licenses/by/4.0/Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (https://creativecommons.org/licenses/by/4.0/).
spellingShingle Article
Abu Bakar, Rana
Kijsirikul, Boonserm
Enhancing Network Visibility and Security with Advanced Port Scanning Techniques
title Enhancing Network Visibility and Security with Advanced Port Scanning Techniques
title_full Enhancing Network Visibility and Security with Advanced Port Scanning Techniques
title_fullStr Enhancing Network Visibility and Security with Advanced Port Scanning Techniques
title_full_unstemmed Enhancing Network Visibility and Security with Advanced Port Scanning Techniques
title_short Enhancing Network Visibility and Security with Advanced Port Scanning Techniques
title_sort enhancing network visibility and security with advanced port scanning techniques
topic Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC10490701/
https://www.ncbi.nlm.nih.gov/pubmed/37687997
http://dx.doi.org/10.3390/s23177541
work_keys_str_mv AT abubakarrana enhancingnetworkvisibilityandsecuritywithadvancedportscanningtechniques
AT kijsirikulboonserm enhancingnetworkvisibilityandsecuritywithadvancedportscanningtechniques