[ale] Frequency of high port scans

Dow Hurst dhurst at kennesaw.edu
Fri Apr 12 19:22:26 EDT 2002


When crackers are scanning for open ports, what is the frequency of high
port scans of normally unused ports?  Most crackers would not scan every
port on every machine, correct?  So would having a webserver available
on port 61235, for example, keep a webserver from being attacked based
on current attack profiles?  Many webservers are for limited use by
small workgroups and aren't really meant to be truly public.  I am just
interested in current hard data on how port scans are usually
conducted.  I would imagine this might be how security by obscurity
could actually succeed.  I can use the kind of data the Michael H.
Warfield posted to warn people to stay on top of patches for all
webservers.
Dow

-- 
__________________________________________________________
Dow Hurst                   Office: 770-499-3428
Systems Support Specialist  Fax:    770-423-6744
1000 Chastain Rd.
Chemistry Department SC428  Email:dhurst at kennesaw.edu
Kennesaw State University         Dow.Hurst at mindspring.com
Kennesaw, GA 30144
*********************************
*Computational Chemistry is fun!*
*********************************

---
This message has been sent through the ALE general discussion list.
See http://www.ale.org/mailing-lists.shtml for more info. Problems should be 
sent to listmaster at ale dot org.






More information about the Ale mailing list