Penetration Testing mailing list archives

RE: windows, nessus scanner, and a VPN


From: Michael Gargiullo <mgargiullo () pvtpt com>
Date: Tue, 13 Sep 2005 13:32:23 -0400



Unfortunately not.  I tried that at first, but several of the VPN
clients block the traffic.

-----Original Message-----
From: mike jablonski [mailto:mkj () swissmail org] 
Sent: Monday, September 12, 2005 4:53 PM
To: Michael Gargiullo
Cc: michael.boman () gmail com; pen-test () securityfocus com
Subject: RE: windows, nessus scanner, and a VPN

Couldn't you use VMware and bridge the NICs?

-- 
jabber
"paranoid by default"


Quoting Michael Gargiullo <mgargiullo () pvtpt com>:

Sweet, this is what I need.  I notice it only ships with 86 plugins.
Do
you know if the others don't work at all, or is it a hit or miss
situation with the other plugins?

-----Original Message-----
From: Michael Boman [mailto:michael.boman () gmail com] 
Sent: Monday, September 12, 2005 2:19 AM
To: Michael Gargiullo
Cc: pen-test () securityfocus com
Subject: Re: windows, nessus scanner, and a VPN

On 9/9/05, Michael Gargiullo <mgargiullo () pvtpt com> wrote:
Now for the question.  Does anyone know of a scanning tool that runs
on
windows (Due to the different VPN clients used) other then NeWT.  I
don't have $7000 plus the $1200 a year in my budget for one scanning
tool.

Nessus was recently ported to the Win32 platform by Cenzic
(http://www.cenzic.com/nessusport.html). Not super-stable yet, but you
can work around the issues (NessusD needs to be restarted between each
scan).

<plug type="shameless">
I blogged about it at

http://proxy.11a.nu/2005/08/16/cenzic-releases-windows-nt-port-of-nessus
-vulnerability-scanner/,
and you can download the Win32 binaries (without filling in any
registration and what not) from

http://proxy.11a.nu/2005/08/16/binaries-and-source-code-for-cenzics-wind
ows-nt-port-of-nessus-uploaded/
</plug>

Best regards
 Michael Boman

-- 
IT Security Researcher & Developer
http://proxy.11a.nu



------------------------------------------------------------------------
------
Audit your website security with Acunetix Web Vulnerability Scanner: 

Hackers are concentrating their efforts on attacking applications on
your 
website. Up to 75% of cyber attacks are launched on shopping carts,
forms, 
login pages, dynamic content etc. Firewalls, SSL and locked-down
servers are

futile against web application hacking. Check your website for
vulnerabilities 
to SQL injection, Cross site scripting and other web attacks before
hackers
do! 
Download Trial at:

http://www.securityfocus.com/sponsor/pen-test_050831

------------------------------------------------------------------------
-------




------------------------------------------------------------------------------
Audit your website security with Acunetix Web Vulnerability Scanner: 

Hackers are concentrating their efforts on attacking applications on your 
website. Up to 75% of cyber attacks are launched on shopping carts, forms, 
login pages, dynamic content etc. Firewalls, SSL and locked-down servers are 
futile against web application hacking. Check your website for vulnerabilities 
to SQL injection, Cross site scripting and other web attacks before hackers do! 
Download Trial at:

http://www.securityfocus.com/sponsor/pen-test_050831
-------------------------------------------------------------------------------


Current thread: