Loading video...
Video Failed to Load
Hide your server from hackers, disable simple ping-based discovery and go stealthy 🥷 No replies, no discovery. Add this👉`-A ufw-before-input -p icmp --icmp-type echo-request -j DROP`
73,590 views • 4 months ago •via X (Twitter)
26 Comments

"No replies, no discovery." This is a nonsense statement, disabling ping won't stop nmap / port scanning. Ping doesn't really mean anything.

This is bullshit from 20 years ago. You sent your exploit to IP address ranges without caring to look if someone is there. This will not protect you from bad actors, but make debugging problems harder.

Reducing attack surface via ICMP echo-request blocking is a solid network hardening tactic. This limits OSINT reconnaissance and automated scanning. Combine with port filtering and rate limiting for true stealth. #Cybernorse

NetworkChuck: "sudo ufw reload" ping: "Network timed out" NetworkChuck: "Hmm seems like its not working"

don’t do this…it’s a horrible practice that somehow gained some popularity despite it not doing much good

Just use synping instead

Dropping ping only blocks echo replies; it doesn’t “hide” services.

sudo nmap -Pn target

Security through obscurity is for retards

Chuck take a look at @AnyoneFDN think you will be surprised at what's free and available for everyone to use, to keep safe online, nothing beats 100% decentralized, love your content BTW.

Great advice as always. Today's word has to be stealthy. :)

This guy is good but the way joke and explain makes me confused

but if you are developing make sure your home and office IP can ping in case you ran in some networking problems that might help you

You really think in 2026 hackers use ICMP to check for open ports / server existence…? I want to believe you are cleverer… What they do is „ping“ on 443 udp / tcp instead, same for 88, 53, 22 🤓

So prompt engineering existed since ages🧐 I thought I came with AI

It is actually not hiding but making it less talk-ative, but still a good point 👍️ You could add fail2ban into your recommendation bro

My mangos are easy to find. My servers? Not anymore.

Ew, nano

Super useful tutorial as always chuck thank you. Keep them coming

When running web server, you lasso disable port 80 or other ports? You will be always discovered if running public

IPv4 are effectively all used, so disabling ping won’t hide much. Attackers could lookup IP ownership and do a port scan. Might be useful for IPv6 though.

What a bunch of crap

A hacker is not looking to scan every Tom, dick and Harry IP addresses.

👀 hide

Don't do this. It makes simple network troubleshooting a pain in the ass.

Great advice!
