正在加载视频...

视频加载失败

Hide your server from hackers, disable simple ping-based discovery and go stealthy 🥷 No replies, no discovery. Add this👉`-A ufw-before-input -p icmp --icmp-type echo-request -j DROP`

73,590 次观看 • 4 个月前 •via X (Twitter)

26 条评论

Chris Stevens 的头像
Chris Stevens4 个月前

"No replies, no discovery." This is a nonsense statement, disabling ping won't stop nmap / port scanning. Ping doesn't really mean anything.

pro-marktwirtschaft 的头像
pro-marktwirtschaft4 个月前

This is bullshit from 20 years ago. You sent your exploit to IP address ranges without caring to look if someone is there. This will not protect you from bad actors, but make debugging problems harder.

Cybernorse 的头像
Cybernorse4 个月前

Reducing attack surface via ICMP echo-request blocking is a solid network hardening tactic. This limits OSINT reconnaissance and automated scanning. Combine with port filtering and rate limiting for true stealth. #Cybernorse

Dither Dude 的头像
Dither Dude4 个月前

NetworkChuck: "sudo ufw reload" ping: "Network timed out" NetworkChuck: "Hmm seems like its not working"

10111010 的头像
101110104 个月前

don’t do this…it’s a horrible practice that somehow gained some popularity despite it not doing much good

dav 的头像
dav4 个月前

Just use synping instead

hdsnetsec 的头像
hdsnetsec4 个月前

Dropping ping only blocks echo replies; it doesn’t “hide” services.

Tom Bombadil (Parroty) 🦜 的头像
Tom Bombadil (Parroty) 🦜4 个月前

sudo nmap -Pn target

Bill 的头像
Bill4 个月前

Security through obscurity is for retards

Chloe Pebbles 的头像
Chloe Pebbles4 个月前

Chuck take a look at @AnyoneFDN think you will be surprised at what's free and available for everyone to use, to keep safe online, nothing beats 100% decentralized, love your content BTW.

Duncan Underwood 的头像
Duncan Underwood4 个月前

Great advice as always. Today's word has to be stealthy. :)

11 SAVAGE 🦍 的头像
11 SAVAGE 🦍4 个月前

This guy is good but the way joke and explain makes me confused

Saad Altaf 🇵🇰 的头像
Saad Altaf 🇵🇰4 个月前

but if you are developing make sure your home and office IP can ping in case you ran in some networking problems that might help you

Carsten 的头像
Carsten4 个月前

You really think in 2026 hackers use ICMP to check for open ports / server existence…? I want to believe you are cleverer… What they do is „ping“ on 443 udp / tcp instead, same for 88, 53, 22 🤓

Faisal S Khan 的头像
Faisal S Khan4 个月前

So prompt engineering existed since ages🧐 I thought I came with AI

PingWizard 💙 的头像
PingWizard 💙4 个月前

It is actually not hiding but making it less talk-ative, but still a good point 👍️ You could add fail2ban into your recommendation bro

Ax Weber 的头像
Ax Weber4 个月前

My mangos are easy to find. My servers? Not anymore.

Markus Burkhardt 的头像
Markus Burkhardt4 个月前

Ew, nano

Marius Miclau 的头像
Marius Miclau4 个月前

Super useful tutorial as always chuck thank you. Keep them coming

Mart In 的头像
Mart In4 个月前

When running web server, you lasso disable port 80 or other ports? You will be always discovered if running public

Rishi Kant 的头像
Rishi Kant4 个月前

IPv4 are effectively all used, so disabling ping won’t hide much. Attackers could lookup IP ownership and do a port scan. Might be useful for IPv6 though.

$ⵜǝⴼ@ن 的头像
$ⵜǝⴼ@ن4 个月前

What a bunch of crap

Ade 🇳🇬🇳🇬🇳🇬🇳🇬 的头像
Ade 🇳🇬🇳🇬🇳🇬🇳🇬4 个月前

A hacker is not looking to scan every Tom, dick and Harry IP addresses.

followfrederick 的头像
followfrederick4 个月前

👀 hide

Secure ICS OT 的头像
Secure ICS OT4 个月前

Don't do this. It makes simple network troubleshooting a pain in the ass.

Echo 的头像
Echo4 个月前

Great advice!

相关视频