Vulnerability vs. Pen test
- From: jlay@xxxxxxxxxxxxxxxxxxx
- Date: Wed, 22 Apr 2009 14:41:52 -0600 (MDT)
So part of PCI DSS requirements are for a quarterly vulnerability
assessment, and a yearly pentest. My question is: is Nessus considered
just a vulnerability scanning app? Thanks.
James
------------------------------------------------------------------------
This list is sponsored by: InfoSec Institute
Tired of using other people's tools? Why not learn how to write your own exploits?
InfoSec Institute's Advanced Ethical Hacking class teaches you how to write stack and heap buffer overflow exploits for Windows and Linux. Gain your Certified Expert Penetration Tester (CEPT) cert as well.
http://www.infosecinstitute.com/courses/advanced_ethical_hacking_training.html
------------------------------------------------------------------------
- Follow-Ups:
- Re: Vulnerability vs. Pen test
- From: James Lay
- Re: Vulnerability vs. Pen test
- From: R. DuFresne
- RE: Vulnerability vs. Pen test
- From: Nick Vaernhoej
- Re: Vulnerability vs. Pen test
- From: Jeffrey Walton
- Re: Vulnerability vs. Pen test
- From: Ulises2k
- Re: Vulnerability vs. Pen test
- Prev by Date: HOST header manipulation
- Next by Date: Re: Need Some Guidance Please
- Previous by thread: HOST header manipulation
- Next by thread: Re: Vulnerability vs. Pen test
- Index(es):