The first step in ethical hacking is to gather information on the target system. The tools and techniques used to gather this information is called Footprinting. Footprinting includes gathering information about the network, host and also people who work in that organization. It is a key process that needs to be done thoroughly for any ethical hacker to be successful.
Security posture
Footprinting helps in assessing the security posture of an organization. It allows the ethical hacker to learn the IP addresses, DNS information, operating systems, phone numbers, email ids, and other valuable information. Footprinting can provide an overview of how an organization prioritizes it’s security posture.
Reading an older article? Use the brief to stay current.
This Article Gives You the Background. The Brief Gives You What Changed Next.
Get the weekday cyber brief for new policy moves, CISA actions, and risk developments this article could not cover when it was published.
By subscribing you agree to our Privacy Policy.
Free. Weekday mornings. 5 minutes or less.
Attack surface reduction
Footprinting allows the ethical hacker to understand the attack surface. One of the first things that and ethical hacker will do is analyze what ports are open and determine the characteristics of the target system.
What is the easiest way to reduce the attack surface? Be sure to close all unused ports. This is a very basic concept but hackers love when this concept is overlooked. And it often is!
Reading an older article? Use the brief to stay current.
This Article Gives You the Background. The Brief Gives You What Changed Next.
Get the weekday cyber brief for the developments, risk shifts, and new signals that changed the picture after this article was published.
By subscribing you agree to our Privacy Policy.
Free. Weekday mornings. 5 minutes or less.
Network mapping
Footprinting will assist in drawing network maps of the target organization. These network maps cover topology, routers, servers and other key components in the network. Footprinting helps to identify the details of the network components and may even allow the ethical hacker to identify the physical location of the components!
Newer CyberExperts coverage on this topic
This article still works as background. If you want the current picture, start with the freshest related coverage below and today's brief.
The 5-Minute Cyber Brief: September 18, 2026
Friday clock stories: Cisco ISE root bypass due Saturday, Acronis hosting LPE, MikroTik MikroTrick, Check Point management root.
Check Point CVE-2026-91843: Unauth Stack Overflow to Root on Management Servers
Pre-auth login overflow yields root on Security Management / Log servers. Apply LivePatch sk1000155; lock Trusted Clients.
MikroTik RouterOS MikroTrick: Unauth SSH Chain Hijacks Devices
CERT.pl MikroTrick chain: SSH auth bypass + privilege escalation. Two CVEs already on CISA KEV.
The 5-Minute Cyber Brief: September 18, 2026
The fastest way to catch up on what changed after this article was published.
Start your morning with the signal that matters.
Get the biggest cybersecurity developments, why they matter, and where to go deeper on CyberExperts.
By subscribing you agree to our Privacy Policy.
Free. Weekdays. Built for operators.