← Back to Attack / Defense Lab
OSI LAYER 1 // Physical Layer

Physical Port Access

Physical port access occurs when an unauthorized person connects equipment to an exposed Ethernet, console, USB, or other interface.

PREMIUM RESOURCE
01 // HOW IT WORKS

Mechanism

A physical port can provide network access, management access, or a path to introduce devices if controls are weak.

02 // DETECTION

Indicators to watch

New switch MAC addresses, link-up events at unused ports, console access logs, USB device events, and unexpected endpoint changes.

03 // ATTACK FLOW

Concept diagram

01Unused network / console port↓
02Unauthorized connection↓
03New device appears↓
04Network / management access↓
05Port security + NAC
04 // PREVENTION

Defensive controls

Disable unused ports, lock equipment rooms, use port security/NAC, protect console ports, and monitor device connections.

05 // SECURITY TOOL

Recommended security control

NAC + switch port security

Demonstrate with a spare switch or lab endpoint.

06 // DEFENSE TOOL

Defense tool

The administrator has not attached a tool yet. This slot will show “Build Soon” until a link or file is configured.

PREMIUMBuild Soon
◈
DEFENSE TOOL // BUILD SOONThe administrator can attach a file or external tool link from the private admin portal.
AUTHORIZED LEARNING

All attack descriptions are for defensive education. Test scanning, traffic generation, interception, wireless testing, and vulnerable applications only on systems and networks you own or are explicitly authorized to assess.