Intrusion Detection Systems mailing list archives
Re: Re: Assessment tools/Scanners
From: gshipley () neohapsis com (Greg Shipley)
Date: Fri, 8 Oct 1999 12:39:16 -0500 (CDT)
On Fri, 8 Oct 1999 henry.escobar () mindspring com wrote:
I was surprised that I didn't see nmap in your list as well. It's a great portscanner with almost everytype of scan available for free at http://www.insecure.org/nmap
Namp is awesome, but it is NOT a vulnerability assesment tool in the same manner the others are. I can't point nmap at a machine and have it report back "You are running IIS and the MDAC hole is still present." nmap doesn't have a back-end vulnerability DB. It's great, but it doesn't have that kind of functionality. I use nmap almost every day, and you are right, that is what an intruder would probably use. BUT - it is a port scanner. When you purchase Cybercop Scanner, ISS, etc., you are paying for the scanner AND the back-end DB. It's the reporting and the specific vuln checks that you pay for. Of course, if you know all the problems on a per-port, per-service level (some 700 known issues) then yeah - you could use nmap and do the work by hand....
I've also found, and have fallen in love with, http://www.opensec.net It has alot of great links to free open source security tools.
Is it a port scanner, or...? Cool - I'll check it out.
Just because you pay for it, doesn't neccesary mean it's better... I also feel that you need to use the tools that will be used against you...
Agreed - but in this case, it's not an apples to apples comparison, no? -G
Current thread:
- RE: Assessment tools/Scanners Staggs, Michael (Oct 08)
- RE: Assessment tools/Scanners Greg Shipley (Oct 08)
- <Possible follow-ups>
- Re: Re: Assessment tools/Scanners Greg Shipley (Oct 08)
- RE: Assessment tools/Scanners Staggs, Michael (Oct 08)
- Re: Assessment tools/Scanners Vin McLellan (Oct 10)
- Re: Assessment tools/Scanners Dug Song (Oct 10)
- Re: Assessment tools/Scanners Marcus J. Ranum (Oct 10)
- Anomaly detection [was Re: Assessment tools/Scanners] Stuart Staniford-Chen (Oct 11)
- Re: Anomaly detection [was Re: Assessment tools/Scanners] Dug Song (Oct 12)
- Re: Anomaly detection [was Re: Assessment tools/Scanners] Stuart Staniford-Chen (Oct 12)
- Re: Anomaly detection [was Re: Assessment tools/Scanners] Dug Song (Oct 12)
- Re: Assessment tools/Scanners Dug Song (Oct 10)
- Pricing intrusions Stuart Staniford-Chen (Oct 12)
- Re: Pricing intrusions Marcus J. Ranum (Oct 13)
