Re: MS05-039 Scanner

From: Byron L. Sonne (blsonne_at_rogers.com)
Date: 08/19/05

  • Next message: Volker Tanger: "Re: IPSO/Secure Platform audit"
    Date: Thu, 18 Aug 2005 22:36:28 -0400
    To: pen-test@securityfocus.com
    
    

    > again because they do patch management instead of vulnerability management.

    And that distinction is becoming less and less important.

    For large companies and networks, I think we're going to see it all fall
    under the guise of asset management eventually. Sort of a 'what do we
    have, where is it and how secure is it' type of deal.

    People that do only patch management are going to come upon harder
    times, as will companies that do only vulnerability management. We can
    already see the beginning; just look at mergers, acquisitions and
    lay-offs in the computer security industry.

    (ethical disclaimer: I work for a company in the vulnerability
    management space)

    ------------------------------------------------------------------------------
    FREE WHITE PAPER - Wireless LAN Security: What Hackers Know That You Don't

    Learn the hacker's secrets that compromise wireless LANs. Secure your
    WLAN by understanding these threats, available hacking tools and proven
    countermeasures. Defend your WLAN against man-in-the-Middle attacks and
    session hijacking, denial-of-service, rogue access points, identity
    thefts and MAC spoofing. Request your complimentary white paper at:

    http://www.securityfocus.com/sponsor/AirDefense_pen-test_050801
    -------------------------------------------------------------------------------


  • Next message: Volker Tanger: "Re: IPSO/Secure Platform audit"

    Relevant Pages

    • Re: Need help in making penetration testing tool
      ... So called vulnerability management tools and systems combine assessment tools like vulnerability scanners, port and network scanners with security patching funcionality. ... Cenzic has the most comprehensive solutions to meet your application security penetration testing and vulnerability management needs. ...
      (Pen-Test)
    • RE: VA tools
      ... Product Manager, Vulnerability Management Solutions ... Concerned about Web Application Security? ...
      (Pen-Test)
    • Re: When is a Security patch not a patch?
      ... I'm the IT Security dude. ... security patches, real threats, etc.) and doing an impact analysis on them. ... there is no patch management procedure in place at all. ...
      (Security-Basics)
    • Re: Microsoft Operations Manager, Systems Management Server comparable for Linux
      ... Microsoft Operations Manager and Systems Management Server combination ... from Micro$. ... I assume you're talking patch management - ... One option is Novell Zenworks; I know it also works with RHEL. ...
      (Fedora)
    • RE: SMS for server Patch Management
      ... if you steel want to use SMS as patches management reply to me advise you ... to confirm whether i can use SMS 2003 for complete patch management activity ... Server Patch Management. ...
      (microsoft.public.sms.admin)