You are using Wireshark to monitor your network traffic and you see a lot of packages with the FIN, PUSH and URG flags activated; what can you infer about this behavior?

Last Updated on August 13, 2021 by Admin 2

You are using Wireshark to monitor your network traffic and you see a lot of packages with the FIN, PUSH and URG flags activated; what can you infer about this behavior?

  • The Layer 3 Controls are activated in the Switches
  • The Spanning Tree Protocol is activated in the Switches
  • One NIC is broadcasting erroneous traffic
  • An attacker is running a XMAS scan against the network
0 0 votes
Article Rating
Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments