mark6729
(TheBeardedOne)
1
Hi All,
I am looking into purchasing/trying a Internal Vulnerability scanner for my windows domain network. There are quite a few products to pick from. I am hoping you lovely spiceheads can give me some suggestions for product(s) you use or used and experience with them. I know the pricing can vary on these, so I am not going to worry about the budget at the moment. Ideally something I can test with and without domain credentials, list the vulnerabilities based upon know threats for Windows workstations and servers. etc.
8 Spice ups
Rod-IT
(Rod-IT)
2
Nessus plugin for Kali, but there are many, it depends on what you are hoping to scan for, but we use Nessus to identify vulnerabilities and issues on our boxes, i even use the free version at home to learn it
1 Spice up
dbeuerlein
(DustinB3403)
3
OpenVAS has a free and paid solution as well. Comes with a Web interface that you’d setup and get going.
Not the most clear interface, but useful.
2 Spice ups
mark6729
(TheBeardedOne)
4
Thanks I ran across that and it seems like a good tool.
maxsec
(maxsec)
5
Alienvaults Ossim or the full pay for USM
Tenables Nessus
Are the two to look at. Openvas is ok but like ossim it.needs more.care and attention to the pay for varients
2 Spice ups
MBSA is a very basic - but free - tool published by Microsoft. It’ll give you a good place to start and might help direct the rest of your requirements.
Nessus. It’s not free but it’s what most paid people who come onsite will use for their automated testing.
Rod-IT
(Rod-IT)
8
But there is a free version, it’s not got all the features, but it’s enough for the basic scans
Hey there Martin, thanks for mentioning us! Please send me a PM with your mailing address and Tshirt size so I can get some swag to you!
dbeuerlein
(DustinB3403)
10
Why can’t I get some swag?
It almost certainly won’t be free for commercial use.
In no particular order, Nessus, OpenVAS, Qualys and LanGuard. Lots of options out there, depending on your ability to setup and configure or your budget.
Retina Network Community - for a free product does very comprehensive scan and unlike others the only limitation is 256 ips per scan.
Alienvault Ossim takes time to set up - I couldn’t even get it to discover my network.
zuphzuph
(zuphzuph)
14
Nessus/Rapid7 Insight Ops/Metasploit/AV’s OSSIM take your pick. Personally, I prefer Nessus above all else.