Factbites
 Where results make sense
About us   |   Why use us?   |   Reviews   |   PR   |   Contact us  

Topic: Vulnerability scanner


Related Topics

In the News (Tue 2 Dec 08)

  
  SAINT Network Vulnerability Scanner and Penetration Testing Tool
Examine your network with the SAINT vulnerability scanner, and expose where an attacker could breach your network.
Go to a higher level of visibility and exploit the vulnerability to prove its existence without a doubt.
The browser-based console provides the ability to centrally manage an entire network of SAINT vulnerability scanners located around the globe from a single interface.
www.saintcorporation.com   (337 words)

  
  Scanner - Wikipedia, the free encyclopedia
In stage lighting, a scanner is a spotlight which can move its beam with help of a mirror.
In photolithography, a scanner is a type of stepper, a device used to sequentially expose a semiconducting silicon wafer to an integrated circuit design pattern projected through a reticle.
Scanner is also the name of a German metal band.
en.wikipedia.org /wiki/Scanner   (217 words)

  
 Scanner article - Scanner data computer photograph digital scanner (computing) computer - What-Means.com   (Site not responding. Last check: 2007-11-01)
A scanner is a technological device which acquires information from the world and converts it into data, often to be analyzed or stored by a computer.
In the context of computing, a scanner is a device which analyzes a physical image (such as a photograph, printed text, or handwriting) and converts it to a digital image.
In computer networking, a scanner is a computer program to probe a remote system, typically to discover a vulnerability.
www.what-means.com /encyclopedia/Scanner   (462 words)

  
 Security Report - Vulnerability Scanners - Steps to Attack a Server Using a Vulnerability Scanner
This vulnerability is caused by an unsafe strcpy that copies the entire parameter of the user's FTP command to a stack buffer of 256 bytes.
A vulnerability scanner would be able to find this by scanning for it using the exploit code in its database.
Vulnerability scanners are one of the most used tools in a hacker's toolbox because they are easily scripted and can discover so many vulnerabilities.
www.sisecure.com /security-report/october/vulnScanners7.htm   (1179 words)

  
 Tenable Network Security   (Site not responding. Last check: 2007-11-01)
It is ideal for usage by a security consultant who wishes to conduct a vulnerability audit, or by a Microsoft Windows administrator who wishes to audit their network.
NeWT is a complete network vulnerability scanner which includes high-speed network and host based checks for more than 8000 of the most commonly updated vulnerabilities, a wide variety of scanning options, an easy-to-use interface and effective reporting.
Multiple NeWT scanners can be managed by the Lightning Console which provides distributed vulnerability scanning, security workflow management, executive reporting, and correlation of known vulnerabilities with intrusion detection events.
www.tenablesecurity.com /products/newt.shtml   (661 words)

  
 Security Report - Vulnerability Scanners - Vulnerability Scanner Tools Threat Summary
WebInspect is a vulnerability scanner that sets itself apart from other scanners by attacking the server at every level.
The Scanner the part of the SandCat Suite that can be run from a remote location to identify, exploit and report vulnerabilities in a system.
Appscan is another commercial vulnerability scanner which can detect many common server misconfigurations as well as vulnerabilities.
www.sisecure.com /security-report/october/vulnScanners15.htm   (1392 words)

  
 A vulnerability scanner reports that the HTTPd proxy allows the CONNECT method, potentially exposing internal hosts
The vulnerability scanner reports this as a successful CONNECT (which it is) and claims that it may be possible to exploit this to connect to internal hosts.
This is a false positive reported by the vulnerability scanner because the firewall is behaving in a manner that the vulnerability scanner does not expect.
To verify that this is the case, filter the logfile on the firewall for the time that the vulnerability scan was run and the phrase "service unavailable." The log messages should indicate that the HTTPd proxy returned the 503 Service Unavailable message code when the vulnerability scanner attempted the CONNECT method to port 8080/TCP.
service1.symantec.com /SUPPORT/ent-gate.nsf/38e56e3d471fe42c88256bc1005cd7d4/01e00c8c0901d24988256d86007372ca?OpenDocument&src=bar_sch_nam   (259 words)

  
 Port Scanner | Network Security Scanner | Vulnerability Assessment Software - ScanFi
The goal of a vulnerability assessment system is to identify devices on your network that are open to known vulnerabilities.
A compromise in one of the assets would throw open the entire network to unauthorized access, and without a vulnerability assessment software it would be too late to react to the growing menace.
It is a centralized, non-intrusive vulnerability scanner that helps you scan for vulnerabilities across heterogeneous network infrastructures comprising of switches, routers and operating systems such as Windows, Linux.
www.securecentral.com /products/scanfi   (414 words)

  
 Network Computing | Feature | Security | Vulnerability Assessment Scanners | Page 1 | January 8, 2001   (Site not responding. Last check: 2007-11-01)
Considering they were known vulnerabilities (several of which have been around for quite some time!), this test should have been a piece of cake.
Mitre Corp.'s CVE (Common Vulnerability and Exposures) project is attempting to bring some method to the madness by enumerating and classifying known vulnerabilities.
Second, the scanner would have to be pretty accurate and limited in its susceptibility to flagging false positives.
www.nwc.com /1201/1201f1b1.html   (1520 words)

  
 Vulnerability scanner - Wikipedia, the free encyclopedia
A vulnerability scanner is a type of computer program specifically designed to search a given target (piece of software, computer, network, etc.) for weaknesses.
The scanner systematically engages the target in an attempt to assess where the target is vulnerable to "attack".
The program can be used either prophylactically (to find holes and plug them before they are exploited) or maliciously (to find holes and exploit them).
en.wikipedia.org /wiki/Vulnerability_scanner   (101 words)

  
 CST :: cum security toolkit :: port scanner :: cgi scanner   (Site not responding. Last check: 2007-11-01)
The cgi scanner is a web vulnerability scanner that scans using a database of scripts, files and directories (user editable).
The scanner outputs the scripts and/or directories that return a 200, 201, 202, 204, 403 or 401 HTTP code (you can specify other codes too using an extra flag) and outputs the target webserver software.
The cst security scanners are written entirely in Java, to run them you need a Java runtime environment, go to http://java.sun.com/ to download one (look for j2se or a Java virtual machine).
www.blackhat.be /cst   (366 words)

  
 Network Computing | Feature | Security | Vulnerability Assessment Scanners | Page 1 | January 8, 2001
Considering they were known vulnerabilities (several of which have been around for quite some time!), this test should have been a piece of cake.
Mitre Corp.'s CVE (Common Vulnerability and Exposures) project is attempting to bring some method to the madness by enumerating and classifying known vulnerabilities.
Second, the scanner would have to be pretty accurate and limited in its susceptibility to flagging false positives.
www.networkcomputing.com /1201/1201f1b1.html   (1681 words)

  
 Internet Scanner   (Site not responding. Last check: 2007-11-01)
Internet Security Systems' Internet Scanner (ISS) is a security product that assesses devices on a network for vulnerabilities.
Internet Scanner provides detailed information about each vulnerability found, including the vulnerable host, a description of the vulnerability, and the steps to take to eliminate the vulnerability.
Internet Scanner attempts to identify the operating system of the machine it's scanning by running through a list of checks.
www.itc.virginia.edu /netsys/security/iss/issdoc.html   (625 words)

  
 Network Computing | Feature | Security | Vulnerability Assessment Scanners | Page 2 | January 8, 2001
Nessus Security Scanner's architecture is a little different from the other scanners we tested, as it uses a client/server model.
On the reporting front, Nessus Security Scanner tends to fall a little short, and the GUI could be a little better organized.
For example, all found vulnerabilities in the GUI are indexed by port and system, which is a real pain in the butt when you're delegating remediation efforts.
www.nwc.com /1201/1201f1b2.html   (1003 words)

  
  CoreLabs — Advisories 
While PSCP is authenticating to the server this vulnerability can be triggered by sending a specially crafted big number (the "base" big number sent by the server).
This vulnerability can be used by an attacker to execute arbitrary code on the machine running PSCP.
A second vulnerability can be triggered in the PuTTY client during the authentication process.
www.coresecurity.com /common/showdoc.php?idx=417&idxseccion=10   (791 words)

  
 SecureLogix Announces Free Modem Vulnerability Scanner
Scanners only identify a small subset of the total number of modems inside an enterprise, and their static, "snapshot-in-time" findings are only relevant for a very brief period.
The disparity is due largely to the fact that modem scanners only detect modems that are connected and set to auto-answer, but are not in use for dial-up connectivity at the time of the scan.
These live modem connections are invisible to scanners, but not to voice firewalls that can detect all modems as soon as they become active on the network.
www.tmcnet.com /usubmit/-securelogix-announces-free-modem-vulnerability-scanner-/2005/aug/1168770.htm   (1377 words)

  
 Security Vulnerability Audit- AuditExpress from Pedestal Software   (Site not responding. Last check: 2007-11-01)
AuditExpress is the only Vulnerability Audit solution that combines the traditional functions of a vulnerability scanner and the core features of an audit tool — providing security and information technology professionals with the most comprehensive functionality and the best value.
A vulnerability audit is more comprehensive than a vulnerability scan as it performs all of the base-level security checks in addition to known vulnerabilities.
You can also schedule vulnerability audits by day and time (such as at night or on weekends) to minimize or eliminate any noticeable impact on system or network performance.
www.pedestalsoftware.com /products/ae/index.asp   (289 words)

  
 Talisker Network Vulnerability Scanners
Many network scanners can be given privileged user accounts to provide the added functionality of a Host Vulnerability Scanner.
Internet Scanner performs scheduled and selective probes of your network's communication services, operating systems, key applications, and routers in search of those vulnerabilities most often used by unscrupulous threats to probe, investigate, and attack your network.
NeWT stands for 'Nessus Windows Technology' and is a stand-alone vulnerability scanner NeWT is a complete network vulnerability scanner which includes high-speed checks for more than 1500 of the most commonly updated vulnerabilities, a wide variety of scanning options, an easy-to-use interface and effective reporting.
www.networkintrusion.co.uk /N_scan.htm   (2031 words)

  
 Freeware Forum -> Nessus vulnerability scanner   (Site not responding. Last check: 2007-11-01)
Nessus is the world's most popular open-source vulnerability scanner used in over 75,000 organizations world-wide.
It is estimated that the Nessus scanner is used by 75,000 organizations world-wide.
Nessus 2.1 is the only security scanner out there which has the ability to detect the remote flaws of the hosts on your network, but their local flaws and missing patches as well - whether they are running Windows, Mac OS X or a Unix-like system.
decentdownloads.x-istence.com /Forum/index.php?showtopic=447   (351 words)

  
 Network scanners pinpoint problems
Comparing the output of all these scanners to identify exactly what vulnerabilities they are describing is a cumbersome and arduous process.
Internet Scanner took the longest in our first round of tests, having to be stopped after eight hours because it hung on the analysis of the management IP for the NetScreen firewall.
Vulnerability-assessment scanners are improving, but many are still spotty with vulnerability identification, and they have not been developed to efficiently scan large networks.
www.networkworld.com /reviews/2002/0204bgrev.html   (2263 words)

  
 FAQs: STAT Scanner Professional Edition - STAT® Security Threat Avoidance Technology   (Site not responding. Last check: 2007-11-01)
The database vulnerability assessment information is based on the knowledge of the STAT team of security engineers who have researched security advisories, knowledge base papers and professional security group articles to provide a single source of vulnerability information.
STAT Scanner is updated several times a month to keep the user up to date with the latest threats from hackers.
STAT Scanner runs tests that are specific to each operating system (the user does not have to group machines with like operating systems together to scan).
www.statonline.com /solutions/faqs/professional_faq.asp   (1639 words)

  
 Tenable Network Security Inc.   (Site not responding. Last check: 2007-11-01)
Tenable released the industry’s first passive vulnerability scanner, NeVO, in September of 2003 for the UNIX platform.
It is deployed much like a “sniffer” or a network intrusion detection system and produces reports that are compatible with the Nessus open source vulnerability scanner client and the Tenable Lightning Console.
Tenable's mission is to provide a network security platform for corporations and federal agencies that can quantify and facilitate the reduction of vulnerabilities resident on their networks.
www.tenablesecurity.com /pr11.html   (342 words)

  
 Category:Vulnerability Scanning - SecurityForest
Featuring fast, accurate, and non-intrusive scanning and the industry's most comprehensive vulnerability database, users are able to secure their networks against even the most recent of discovered vulnerabilities.
It is generally updated more frequently than free web scanners such as whisker and nikto, but do take their web site with a grain of salt.
The claims of "20,000 vulnerabilities and exploits" and "Dozens of vulnerability checks are added every day" are highly questionable.
securityforest.com /wiki/index.php/Category:Vulnerability_Scanning   (857 words)

  
 Windows NT/2K/XP DCOM Vulnerability Scanner   (Site not responding. Last check: 2007-11-01)
Warning: This scanner does not detect the rpcss vulnerability as described in MS03-039.
69.60.120.168 does not appear to be vulnerable (unable to connect -- filtered?).
If you are behind a router or firewall, this could be preventing the scan from reaching your computer (the scan will appear as 'unable to connect -- filtered' if this is the case).
secur1ty.net /dcom.cgi   (140 words)

  
 Internet Security Systems - Internet Scanner   (Site not responding. Last check: 2007-11-01)
Once all of your networked devices are identified, Internet Scanner analyzes the configurations, patch levels, operating systems and installed applications to find vulnerabilities that could be exploited by hackers trying to gain unauthorized access.
Internet Scanner finds the weak spots in your network to help you secure your critical assets and prevent compromises that may result in the loss of availability, integrity or confidentiality of critical business information.
Internet Scanner is part of the Proventia Enterprise Security Platform (ESP), which provides preemptive protection across the enterprise, tightly integrated with existing IT processes.
www.iss.net /products_services/enterprise_protection/vulnerability_assessment/scanner_internet.php   (441 words)

  
 Top 10 Vulnerability Scanners
No votes for the Nmap Security Scanner were counted because the survey was taken on a Nmap mailing list.
Nessus is the best free network vulnerability scanner available, and the best to run on UNIX at any price.
SARA is a vulnerability assessment tool that was derived from the infamous SATAN scanner.
sectools.org /vuln-scanners.html   (843 words)

  
 Network Security Scanner & Database Security Scanner.   (Site not responding. Last check: 2007-11-01)
Shadow Security Scanner performs the system scan at such a speed and with such a precision so as to be able to compete with the professional IT security services and hackers, attempting to break into your network.
As network vulnerability scanner provides a direct access to its core, you may use the API (for a detailed information please refer to API documentation) to gain full control to Shadow Security Scanner or to change its properties and functions.
Managing Shadow Security Scanner options is also made simpler: all the key elements of the program interface have bubble help windows with a concise description of their function.
www.safety-lab.com /en/products/1.htm   (591 words)

  
 eEye Digital Security Announces Availability of Free Vulnerability Scanner Following Discovery of Exploit Code for ...
This free vulnerability scanner, which is based on eEye's industry-leading Retina(R) Network Security Scanner, is designed to identify machines vulnerable to attack due to the critical security flaws discovered within Computer Associates' (NYSE:CA) License Management software on Wednesday, March 2, 2005.
More than just a scanner, the Retina Enterprise Suite also provides workflow integration that gives enterprises the means to institutionalize protection strategies that will keep their businesses running.
While many vulnerability assessment technologies can identify threats, this information is usually delivered to IT and security departments overwhelmed with other responsibilities and no means to delegate remediation tasks in an organized fashion.
www.tmcnet.com /usubmit/2005/Mar/1124044.htm   (1422 words)

  
 Retina® Network Security & Vulnerability Assessment Scanner
Network security vulnerabilities are being detected on a daily basis - over 10,000 in the last two years alone.
Retina® Network Security Scanner, recognized as the industry standard for vulnerability assessment, identifies known security vulnerabilities and assists in prioritizing threats for remediation.
Retina leverages the expertise of the eEye Digital Security Research Team, incorporating the most comprehensive and up-to-date vulnerabilities database and scanning technology, which is automatically downloaded at the beginning of each Retina session.
www.eeye.com /html/Products/Retina   (220 words)

Try your search on: Qwika (all wikis)

Factbites
  About us   |   Why use us?   |   Reviews   |   Press   |   Contact us  
Copyright © 2005-2007 www.factbites.com Usage implies agreement with terms.