Security Basics mailing list archives

Re: Architecture of NESSUS


From: Li Yinchao <xcodesadmin () gmail com>
Date: Wed, 9 Nov 2005 10:23:15 +0800

There is a scanner @ xfocus.net named xscan , I think it 's a best  scanner
you can download here http://www.xfocus.org/
best regards!
yours new friend from China!
2005/11/9, Aaron Phillips <aaronwphillips () gmail com>:
On Saturday 05 November 2005 07:12 am, koreshicsi () inbox ru wrote:
Good time of you...
We is group of boffins, who want to do more simple scanner then NESSUS.
Now there isn't leader of scanners, we want to try to do it. Help us.

we need to know the details about NESSUS vulnerability scanner.
Like.
1. The ARCHITECTURE of nessus(nessus client and daemon).
2. How nessus is using different O/S tools like, NMAP, HYDRA..
3. Which module is responsible for what? means which module of nessus is
interacting with NMAP, which is for HYDRA and HOW?
4. Which module is responsible for customization to scan.
5. How to write plug in for nessus and also enable and disable the
plug-in(not by using UI)
6. How to customize the report generation of nessus.
7. How can one integrate nessus with IDS to correlate the report and
alert to reduce false alert .
8. How each and every module is interacting with each-other.

I'd try http://cvsweb.nessus.org/cgi-bin/viewcvs.cgi/ and just start
browsing...



Current thread: