RE: Vuln scan tool for web

From: Bojan Zdrnja (Bojan.Zdrnja_at_LSS.hr)
Date: 07/16/03

  • Next message: Alvin Oga: "Re: Vuln scan tool for web"
    To: "'Domingos Costa'" <domingos@microlink.com.br>, <pen-test@securityfocus.com>
    Date: Wed, 16 Jul 2003 10:51:55 +1200
    
    

    I'd definetly recommend Nessus, as some else did already.

    You can find it at http://www.nessus.org

    Additionaly, when you create users, be sure to limit hosts they can scan
    with your Nessus machine, otherwise they'll be able to use it to scan
    practically any machine on the Internet.
    You can put those limits while adding new users with nessus-adduser script.

    You might also want to change and disable some plugins.

    Best regards,

    Bojan Zdrnja

    > -----Original Message-----
    > From: Domingos Costa [mailto:domingos@microlink.com.br]
    > Sent: Wednesday, 16 July 2003 5:00 a.m.
    > To: pen-test@securityfocus.com
    > Subject: Vuln scan tool for web
    >
    >
    > Hello,
    >
    > I'm looking for a web tool that allow a user connected to my
    > lan scan his own computer for
    > vulnerabilities. It's something similar to ShieldsUP! at
    > grc.com, but i wanna put it inside my lan,
    > at a web server and the user can just click on to start
    > probbing his ports. Do you know some tool??
    > I'm working with linux slackware.
    >
    > Thanks.
    >
    >
    >
    > --------------------------------------------------------------
    > -------------
    > Your network Firewall and IDS products do not prevent Web application
    > exploits - the most common form of online attack - resulting in Web
    > defacement, data theft, sabotage and fraud.
    >
    > KaVaDo is the first and only company that provides a complete and an
    > integrated suite of Web application security products, allowing you to
    > assess your entire environment, automatically set positive security
    > policies and maintainĀ it without compromising business performance.
    >
    > For more information on KaVaDo and to download a FREE white
    > paper on Web
    > applications - security policy automation, please visit:
    > http://www.kavado.com/ad.htm
    > --------------------------------------------------------------
    > --------------
    >
    >

    ---------------------------------------------------------------------------
    Your network Firewall and IDS products do not prevent Web application
    exploits - the most common form of online attack - resulting in Web
    defacement, data theft, sabotage and fraud.

    KaVaDo is the first and only company that provides a complete and an
    integrated suite of Web application security products, allowing you to
    assess your entire environment, automatically set positive security
    policies and maintainĀ it without compromising business performance.

    For more information on KaVaDo and to download a FREE white paper on Web
    applications - security policy automation, please visit:
    http://www.kavado.com/ad.htm
    ----------------------------------------------------------------------------


  • Next message: Alvin Oga: "Re: Vuln scan tool for web"

    Relevant Pages

    • RE: Vuln scan tool for web
      ... >>Your network Firewall and IDS products do not prevent Web application ... >>assess your entire environment, automatically set positive security ... >>For more information on KaVaDo and to download a FREE white paper on Web ...
      (Pen-Test)
    • RE: Vuln scan tool for web
      ... Of course, php coding is not for the weak at heart, and should be done ... > Your network Firewall and IDS products do not prevent Web application ... automatically set positive security ... > For more information on KaVaDo and to download a FREE white paper on Web ...
      (Pen-Test)
    • RE: Vuln scan tool for web
      ... >Your network Firewall and IDS products do not prevent Web application ... >assess your entire environment, automatically set positive security ... >For more information on KaVaDo and to download a FREE white paper on Web ...
      (Pen-Test)
    • Re: Know such a webs server tool?
      ... Wnikto32 with php remote frontend avail at ... >> Your network Firewall and IDS products do not prevent Web application ... automatically set positive security ... >> For more information on KaVaDo and to download a FREE white paper on ...
      (Pen-Test)