Network Scanning
arp-scan
Sends ARP requests to enumerate hosts on local subnets.
Authorized testing only. Practice on systems you own, isolated labs, or targets with written permission. Unauthorized access is illegal.
When
Finding devices on your home lab network including those that block ICMP.
How
Run local network scan; map vendor OUIs.
Why
ICMP may lie; ARP is authoritative on local Ethernet/Wi-Fi segments.
Commands & usage
sudo arp-scan --localnet
sudo arp-scan -I eth0 192.168.1.0/24
Commands are educational examples. Adapt hosts, paths, and rates to your authorized scope.
Recipes
Tags
Related in Network Scanning
Nmap
The definitive network mapper for host discovery, ports, and service/version detection.
Masscan
Asynchronous ultra-fast port scanner for large address spaces.
RustScan
Fast port discovery that pipes open ports into Nmap automatically.
naabu
Fast port scanner from ProjectDiscovery, pipeline-friendly.
AutoRecon
Multi-threaded automatic enumeration of services based on open ports.
Netdiscover
ARP reconnaissance tool for local network host discovery.