Penetration testing almost always starts with reconnaissance, and reconnaissance almost always starts with a port scan. This simulator sends real TCP SYN-scan logic against a 64-port grid representing a target host: watch SYN probes travel out, SYN-ACK replies mark open ports green, RST replies mark closed ports red, and silently-dropped probes behind a firewall resolve to filtered (amber) only after a timeout. Pick a target profile (web server, database, or IoT device) to change which ports are actually listening, toggle firewall filtering to add dropped probes into the mix, and push the scan-rate slider up to see a rate-based intrusion detection system fill its alert meter and eventually block the scan — the same speed-versus-stealth tradeoff real ethical hackers manage with scan-delay flags.