wisemonkeys logo
FeedNotificationProfileManage Forms
FeedNotificationSearchSign in
wisemonkeys logo

Blogs

Reconnaissance

profile
Jermin Shaikh
Aug 30, 2022
0 Likes
0 Discussions
181 Reads

Reconnaissance is the best practice for discovering and collecting information about a system. Reconnaissance derives from military language, which refers to a mission to obtain information from enemy territory.

HOW DOES RECONNAISSANCE WORK;

Reconnaissance generally follows seven steps:

  1. Collect initial information
  2. Determine the network range
  3. Identify active machines
  4. Find access points and open ports 
  5. Fingerprint the operating system
  6. Discover services on ports
  7. Map the network

Using these steps, an attacker will aim to gain the following information about a network:

  • File permissions
  • Running network services
  • OS platform
  • Trust relationships
  • User account information 

One of the most common techniques involved with reconnaissance is port scanning, which sends data to various TCP and UDP (user datagram protocol) ports on a device and evaluates the response. 

THE TWO PHASES OF RECONNAISSANCE IN ETHICAL HACKING ARE AS FOLLOWS;

  • Active reconnaissance
  • Passive reconnaissance

1. Active reconnaissance:-

Dynamic reconnaissance is the kind of reconnaissance where you assemble data about the framework/application by straightforwardly connecting with the framework. At the point when you utilize Active reconnaissance, there is a high possibility that some data like your IP address is known by the framework you are attempting to accumulate the data about. 

2. Passive reconnaissance:-

On account of Passive reconnaissance, you assemble data without interfacing with the framework/application you are attempting to think about. You accumulate data through web indexes or freely available reports. At the point when you utilize Passive reconnaissance, it is highly unlikely that the framework would know your IP address.

HOW TO PREVENT RECONNAISSANCE?

Organizations can use penetration testing to determine what their network would reveal in the event of a reconnaissance attack. Organizations can outsource the work by hiring security testing professionals to carry out penetration testing, vulnerability assessment, compliance testing, etc.

During testing, organizations can deploy port scanning tools (which scan large networks and determine which hosts are up) and vulnerability scanners (which find known vulnerabilities in the network).

SIEM solutions can also detect source IPs that are running a port scanning tool in your network.

Steps followed in reconnaissance –

  • Accumulate inceptive data 
  • Decide the range of the network 
  • Recognize all active machines 
  • Get hold of the OS being used 
  • Uniquely mark the working framework 
  • Reveal services used on ports 
  • Understand the network map

An example used in Reconnaissance:-

Reconnaissance is mainly used for gaining information by visual observation or other detection methods, about the activities and resources of an enemy or potential enemy, or about the meteorologic, hydrographic, or geographic characteristics of a particular area.

 


Comments ()


Sign in

Read Next

Beyond the Track: Why the Best Hotel in Arcadia, Florida, Completes Your IMSA Sebring Getaway

Blog banner

Virtualisation

Blog banner

Bots and Cyber Security

Blog banner

Tools to support CSI activities

Blog banner

Data Analytics in Data Science

Blog banner

Data Acquisition in Cyber Forensics

Blog banner

Guidelines for a Low sodium Diet.

Blog banner

“CONSISTENCY” in Social Media Marketing

Blog banner

Hosting basics

Blog banner

Yoga in INDIA and ABROAD

Blog banner

Service Validation and Testing during the Design Phase

Blog banner

Memory Management in Operating System

Blog banner

38_Network Sniffing Techniques_SBC

Blog banner

Depression

Blog banner

How Social Media Algorithms Will Work in 2026?

Blog banner

Dudhasagar waterfall ?

Blog banner

Health is Wealth

Blog banner

Tea, Coffee, Red Wine, and Teeth: A Stain Survival Guide

Blog banner

Note Taker App

Blog banner

What is 'Multi-core and Multi-threading' ?

Blog banner

Consumer to consumer Business model

Blog banner

virtual machine

Blog banner

The role of artificial intelligence in automating digital forensic analysis.

Blog banner

The Future of Patola Weaving in a Sustainable Fashion World

Blog banner

Deadlock and starvation

Blog banner

KASHMIR TRIPS

Blog banner

Clustering Techniques

Blog banner

Population

Blog banner

Jamming Attacks in Network Security: Disrupting Communication Signals

Blog banner

Uniprocessor scheduling

Blog banner

File management

Blog banner

MAHAKAL LOK UJJAIN

Blog banner

Discover The Top 3 Places To Stay in London

Blog banner

social media issue

Blog banner

differentiate thinking humanly and rationally

Blog banner

Blockchain in IoT Applications

Blog banner

Little Habits, Big Impact: Daily Preschool Routines That Shape the Future

Blog banner

Decrypting Cryptocurrency: Tracing Transactions in Cyber Investigations

Blog banner

Consumer to consumer business mode

Blog banner

Compromising Mobile Platforms

Blog banner

Title: Network Sniffing Techniques: Uncovering the Secrets of Data Transfer

Blog banner

CONCURRENCY: MUTUAL EXCLUSION AND SYNCHRONIZATION-het karia

Blog banner