IDS mailing list archives

Port/Host Scanning Techniques


From: "Tarek Amr Abdullah" <tabdullah () salec com eg>
Date: Wed, 25 Feb 2004 09:37:19 +0200



Hi there

Does anyone know the current techniques used in IDSs in order to detect
Host Scanning and Port Scanning? I think it is something related to
traffic / protocol anomaly. But does anyone know more details about the
implementation.

Thanks in advance


---------------------------------------------------------------------------
---------------------------------------------------------------------------


Current thread: