Scanning Tools

From: Andy Cuff [Talisker] (lists_at_securitywizardry.com)
Date: 11/03/03

  • Next message: johnadams: "Re: Cisco LEAP"
    To: <pen-test@securityfocus.com>
    Date: Mon, 3 Nov 2003 18:23:01 -0000
    
    

    Hi,
    For those that aren't aware I maintain a list of security products
    categorising them and providing a few salient details about each tool. The
    Site is non-profit making, unbiased and vendor neutral. I'm about to update
    all the scanning tools categories but cannot do so without your help. This
    part of the site is well out of date due to work commitments and a
    motorcycle accident but I'm now recovering and getting back on track, in
    order to minimise list noise I've incorporated all the categories in a
    single post. Please note that I'm looking for tools NOT managed services or
    rebadged scanners that don't extend the functionality over the original
    tool. Suggestions regarding categories are welcomed.

    Firstly as I'm sure you're all aware it would be impossible to list all such
    products on a single page therefore I've divided them up into the following
    categories, from the simple upwards:

    Network Enumerators/Mappers.
    Lightweight scanning tools which discover multiple hosts on a network.
    http://www.securitywizardry.com/enum.htm

    Fingerprinting tools; Active & Passive.
    Tools which will probably include Network Enumerator functionality but
    designed to identify the operating system of a host(s) and the services
    running on it/them
    http://www.securitywizardry.com/osfa.htm
    http://www.securitywizardry.com/osfp.htm

    Application Scanners. Scanners designed to test applications such as
    websites and databases either from the network with no privileges or from
    the host with root/admin privileges.
    http://www.securitywizardry.com/database.htm
    http://www.securitywizardry.com/wscan.htm

    Host Scanners.
    Scanners which test the hosts operating system for vulnerabilities from a
    privileged account, many will also fix the vulnerabilities they find.
    http://www.securitywizardry.com/h_scan.htm

    Network Vulnerability Scanners.
    Nearing the top of the range, these test the host or range of hosts for some
    or all of the above scanning hosts remotely for vulnerabilities.
    http://www.securitywizardry.com/N_scan.htm

    Distributed Vulnerability Scanners.
    Getting around firewall and bandwidth issues scanners can be distributed
    around a network, reporting to a central location.
    http://www.securitywizardry.com/dist.htm

    As indicated above functionality increases through the categories therefore
    nmap is under active fingerprinters not enumerators, I have changed the menu
    on site to reflect the order of the above but cannot upload it until month
    end.

    Thanks for any help you can offer

    take care
    -andy
    Talisker Security Tools Directory
    http://www.securitywizardry.com

    ---------------------------------------------------------------------------
    Network with over 10,000 of the brightest minds in information security
    at the largest, most highly-anticipated industry event of the year.
    Don't miss RSA Conference 2004! Choose from over 200 class sessions and
    see demos from more than 250 industry vendors. If your job touches
    security, you need to be here. Learn more or register at
    http://www.securityfocus.com/sponsor/RSA_pen-test_031023
    and use priority code SF4.
    ----------------------------------------------------------------------------


  • Next message: johnadams: "Re: Cisco LEAP"

    Relevant Pages

    • RE: Network Design
      ... Your on the right track with the network configuration - what will make the environment secure are the policies in place in the environment, security of the hosts on the dmz and internal network, etc. ...
      (Security-Basics)
    • RE: Scanning Class A network
      ... Now figure 20 hosts running 20 scan instances at one time it ends up STILL ... and give a way more understandable picture of what the security of this ... Install a distrubuted scanner across the network and segment the networks ... Up to 75% of cyber attacks are launched on shopping carts, forms, ...
      (Pen-Test)
    • Re: False-negatives in several Vulnerability Assessment tools
      ... > Numerous Vulnerability Assessment tools are available for security ... > engineers, pen-testers and network administrators. ... port/vuln being spotted from the scanners. ... couple of solaris 8 servers repeatedly fail due to suspected pcanywhere ...
      (Pen-Test)
    • Re: Network security
      ... You can protect trusted hosts from untrusted hosts by restricting ... The inability of network professionals to easily ... > Cisco NAC will ensure that client security settings ... > Cisco NAC will work across any access method - wired, wireless, VPN. ...
      (microsoft.public.security)
    • Re: [Full-Disclosure] Top 15 Reasons Why Admins Use Security Scanners
      ... Top 15 Reasons Why Admins Use Security ... > Top 15 Reasons Why Admins Use Security Scanners ... > -Am I sure that I have found all vulnerabilities in my network? ...
      (Full-Disclosure)