Detect Malicious Port Sweep Activities

A flowchart with a red central node branching into dotted lines leading to blue nodes, labeled with numbers 80, 53, 23, and 20, each representing various internet protocols. The Upwind logo is in the top left corner.

We are excited to announce support for a new detection type – the identification of malicious port sweeps. Port sweeps can occur when compromised hosts or containers within your environment probe a port on a large number of publicly routable IP addresses or a large number of internal IP addresses. This type of activity is […]