THREAT OPS › Threat News › Credentialed Pre-Port Discovery: Don't Probe the Host, Ask it
Credentialed Pre-Port Discovery: Don't Probe the Host, Ask it
<p style="direction: ltr;"><span style="font-size: undefined;">If your scan engine already holds credentials for a host, it can ask that host which ports are open instead of probing for them.</span></p><p style="direction: ltr;"><span style="font-size: undefined;">Every scan begins with the same question: which ports on this host are open? Everything after it, from identifying services to checking
MITRE ATT&CK techniques
Indicators of compromise
- https://docs.rapid7.com/insightvm/enable-credentialed-pre-port-discovery/#before-you-beginurl
- https://docs.rapid7.com/insightvm/enable-credentialed-pre-port-discovery/#enable-pre-port-discoveryurl
- https://docs.rapid7.com/insightvm/enable-credentialed-pre-port-discovery/#troubleshootingurl
- https://docs.rapid7.com/insightvm/enable-credentialed-pre-port-discovery/url