The first step in ethical hacking is to gather information on the target system. The tools and techniques used to gather this information is called Footprinting. Footprinting includes gathering information about the network, host and also people who work in that organization. It is a key process that needs to be done thoroughly for any ethical hacker to be successful.
Security posture
Footprinting helps in assessing the security posture of an organization. It allows the ethical hacker to learn the IP addresses, DNS information, operating systems, phone numbers, email ids, and other valuable information. Footprinting can provide an overview of how an organization prioritizes it’s security posture.
Reading an older article? Use the brief to stay current.
This Article Gives You the Background. The Brief Gives You What Changed Next.
Get the weekday cyber brief for new policy moves, CISA actions, and risk developments this article could not cover when it was published.
By subscribing you agree to our Privacy Policy.
Free. Weekday mornings. 5 minutes or less.
Attack surface reduction
Footprinting allows the ethical hacker to understand the attack surface. One of the first things that and ethical hacker will do is analyze what ports are open and determine the characteristics of the target system.
What is the easiest way to reduce the attack surface? Be sure to close all unused ports. This is a very basic concept but hackers love when this concept is overlooked. And it often is!
Reading an older article? Use the brief to stay current.
This Article Gives You the Background. The Brief Gives You What Changed Next.
Get the weekday cyber brief for the developments, risk shifts, and new signals that changed the picture after this article was published.
By subscribing you agree to our Privacy Policy.
Free. Weekday mornings. 5 minutes or less.
Network mapping
Footprinting will assist in drawing network maps of the target organization. These network maps cover topology, routers, servers and other key components in the network. Footprinting helps to identify the details of the network components and may even allow the ethical hacker to identify the physical location of the components!
Newer CyberExperts coverage on this topic
This article still works as background. If you want the current picture, start with the freshest related coverage below and today's brief.
Who Should Pay for GSEC? A 2026 Guide to the GIAC Exam
With GSEC, the real question is who pays: $999 for an attempt, $8,780 with SEC401. Who it suits, the 72% pass mark,...
CISA in 2026: Why the Exam Wants the Auditor’s Answer
CISA rewards the auditor's answer, not the engineer's. Who hires CISAs, the exam format, the five-year experience rule, member and non-member fees,...
SC-200 in 2026: Learn KQL First, Then Book the Exam
SC-200 is still active, with an update on October 21. Why KQL comes first, who it fits, the three skill areas, the...
Friday’s brief: TeamCity ransomware, then Roundcube, cPanel, GitLab
The fastest way to catch up on what changed after this article was published.
Start your morning with the signal that matters.
Get the biggest cybersecurity developments, why they matter, and where to go deeper on CyberExperts.
By subscribing you agree to our Privacy Policy.
Free. Weekdays. Built for operators.