Penetration Testing mailing list archives

Re: Why eEye Retina (was MBSA scanner)


From: Bobby.Clarke () sealedair com
Date: Wed, 21 Apr 2004 17:15:45 -0400






Hello all,

Foundstone Enterprise is an great vulnerability scanner with excellent
reporting and remediation built in. All of Foundstone's efforts go into
this one product as it is all that they sell, other than managed services
and training. Very good technical support and vulnerability script
updating.

Bobby Clarke, GSEC
Sealed Air Corporation
201-712-7374
bobby.clarke () sealedair com
http://www.sealedair.com



                                                                           
             "clarke-cummings@                                             
             columbus.rr.com"                                              
             <clarke-cummings@                                          To 
             columbus.rr.com>          pen-test () securityfocus com          
                                                                        cc 
             04/20/2004 10:37                                              
             AM                                                    Subject 
                                       Why eEye Retina (was MBSA scanner)  
                                                                           
             Please respond to                                             
             clarke-cummings@c                                             
              olumbus.rr.com                                               
                                                                           
                                                                           




Hello Everyone,

We recently began evaluating eEye's Retina product for our vulnerability
assessment tool.  We have found the results to be very inconsistent,
showing us vulnerable to issues that have been patched.  We've verified the
patches manually, with MBSA, HFNETCHK, and LanGuard.  eEye didn't have a
good answer as to why the results were so inconsistent.  Any guesses?

Also, how is their support response for those that are customers?  As a
trial customer they aren't a very impressive organization.

Thanks in advance for the help.

Cheers,
Clarke

--------------------------------------------------------------------
mail2web - Check your email from the web at
http://mail2web.com/ .



------------------------------------------------------------------------------

Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off
any course! All of our class sizes are guaranteed to be 10 students or less
to facilitate one-on-one interaction with one of our expert instructors.
Attend a course taught by an expert instructor with years of in-the-field
pen testing experience in our state of the art hacking lab. Master the
skills
of an Ethical Hacker to better assess the security of your organization.
Visit us at:
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
-------------------------------------------------------------------------------





------------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off
any course! All of our class sizes are guaranteed to be 10 students or less
to facilitate one-on-one interaction with one of our expert instructors.
Attend a course taught by an expert instructor with years of in-the-field
pen testing experience in our state of the art hacking lab. Master the skills
of an Ethical Hacker to better assess the security of your organization.
Visit us at:
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
-------------------------------------------------------------------------------


Current thread: