Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Penetration Testing: pen-test environment

pen-test environment

From: Carl Bysen <crbyme_at_writeme.com>
Date: Thu, 03 Jan 2002 21:27:33 +0800

Hi,

doing quite a few pen tests these days, I've setup an environment for doing basic steps. Most often one gets a domain or a range of ip addresses (phone numbers) to pen test. Based on that some basic steps are done using decent tools like nessus, nmap, nsat, whisker, websleuth ....

Now I am wondering wheather there's already a open source pen-test environment which includes those steps and uses as backend system above scanners. Included should be some reporting mechanism which categorizes found vulns (low, middle, high risk), includes separating by scan dates, has a LaTeX/ DocBook, HTML/XML output support.

Maybe someone else has quite a few ideas, like building a whole linux distri which is just used for that.

Thanks for any comment.

Carl Bysen

-- 
_______________________________________________
Sign-up for your own FREE Personalized E-mail at Mail.com
http://www.mail.com/?sr=signup



1 cent a minute calls anywhere in the U.S.!

http://www.getpennytalk.com/cgi-bin/adforward.cgi?p_key=RG9853KJ&url=http://www.getpennytalk.com


----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/
Received on Jan 03 2002
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]