Dummy scan意思

"Dummy scan" is a term used in computer networking and cybersecurity to refer to a type of network scan where the scanner sends out packets with a source IP address that is not its own, often the address of a known safe or "dummy" IP address. This is done to avoid detection by intrusion detection systems (IDS) or intrusion prevention systems (IPS) that may be monitoring the network for suspicious activity.

The purpose of a dummy scan is to disguise the origin of the scan packets, making it harder for network administrators to track down the source of the scan and to prevent the scanner from being automatically blocked by security systems that are configured to block traffic from known bad actors or from specific source IP addresses.

Dummy scans are often used by security researchers or penetration testers to evaluate the security of a network without being detected or blocked by the network's security measures. However, they can also be used by malicious actors to hide their activities and evade detection by security systems.