Need some help for FYP...
My team more or less knows what anti port scanning tools are, but will need to create one...
I need help on detecting port scans... but I have no idea how. I've looked at Sourceforge and found a project called libpcap, which does some packet capturing. I can't find the link between packets capturing and it detecting a port scan... other than knowing that it shows the IP address of the attacker.
Stuck.

Project details: https://fyp.sit.rp.sg/g301-student/show_one_accepted_proposal.php?project_id=53
Don't bother linking... because sgF doesn't support HTTPS linking...