Adversaries may perform a port scan on a system, device, or network to identify live hosts, enumerate open ports and running services, identify operating systems, and map out the network.(Citation: NIST SP 800-82r3) The results of a port scan may inform adversary [Discovery](https://attack.mitre.org/tactics/TA0102), [Lateral Movement](https://attack.mitre.org/tactics/TA0109), and vulnerability exploitation decisions ([Exploitation for Evasion](https://attack.mitre.org/techniques/T0820), [Exploitation for Privilege Escalation](https://attack.mitre.org/techniques/T0890), [Exploitation of Remote Services](https://attack.mitre.org/techniques/T0866)). Some common tools for executing a port scan include `nmap`, `netcat`, and the Advanced Port Scanner.

Linked Issues

Issuelinks
Linktyp Issue
is related to Techniques
is related to Safety Controller
is related to Distributed Control System (DCS) Controller
is related to Workstation
is related to Application Server
is related to Intelligent Electronic Device (IED)
is related to Data Gateway
is related to Human-Machine Interface (HMI)
is related to Control Server
is related to Routers
is related to Jump Host
is related to Remote Terminal Unit (RTU)
is related to Programmable Logic Controller (PLC)
is related to Firewall
is related to Virtual Private Network (VPN) Server
is related to Data Historian
is related to Switch
is related to Programmable Automation Controller (PAC)
is blocked by Static Network Configuration
is blocked by Network Segmentation
is blocked by Network Intrusion Prevention
is blocked by Detection of Port Scan
Impressum Deutsch Englisch