- Applied Network Security
- Arthur Salmon Warun Levesque Michael McLafferty
- 200字
- 2021-07-02 23:30:53
Scan a single IP
This command scans a single IP on the network. If a threat hunter notices strange activity coming from an unfamiliar host, a single IP scan may be useful. Being able to quickly distinguish false positives from false negatives is critical for efficient network security. For example, a network attack might go unnoticed because too many false positives are triggering alerts, creating alert noise.
The alert noise can potentially hide an attack from detection by creating a false negative. The noise also creates confusion and misdirection for the security analyst trying to determine if the attack is real or not. Using an intrusion detection system with an updated attack signature database will help distinguish false positives from false negatives more efficiently. Also, it is important to remember that having too many false negatives can also cause problems. If the intrusion detection system misses an attack, no alerts are activated. This gives the security analyst the illusion that the network is safe and secure, which may not be the case. This is a major issue because an attack could be going on and nobody would be aware of it until it was too late:
nmap 192.168.0.9

- 網(wǎng)絡(luò)空間攻防技術(shù)原理
- 網(wǎng)絡(luò)安全應(yīng)急管理與技術(shù)實(shí)踐
- 計(jì)算機(jī)使用安全與防護(hù)
- 計(jì)算機(jī)病毒原理與防范(第2版)
- 數(shù)據(jù)安全與隱私計(jì)算(第3版)
- Building a Home Security System with BeagleBone
- 學(xué)電腦安全與病毒防范
- 互聯(lián)網(wǎng)企業(yè)安全高級指南
- 無線傳感器網(wǎng)絡(luò)安全與加權(quán)復(fù)雜網(wǎng)絡(luò)抗毀性建模分析
- 網(wǎng)絡(luò)關(guān)鍵設(shè)備安全檢測實(shí)施指南
- 網(wǎng)絡(luò)服務(wù)安全與監(jiān)控
- 信息內(nèi)容安全管理及應(yīng)用
- 信息系統(tǒng)安全等級化保護(hù)原理與實(shí)踐
- 隱私保護(hù)機(jī)器學(xué)習(xí)
- CTF網(wǎng)絡(luò)安全競賽入門教程