Security Basics mailing list archives

RE: Justifying the spend on a vulnerability scanner


From: "mhunt" <mhunt () hotpop com>
Date: Fri, 21 Mar 2003 03:02:03 -0600


I like Retina by Eeye.  It rocks, and goes to the level of having the
Microsoft Knowledge Base number, the Bugtraq ID number, and the exact
steps to fix many vulnerabilities.  It often allows you to remotely fix
registry vulnerabilities right from Retina.  It is a bit expensive, but
well worth it.

-----Original Message-----
From: Gerhard Rickert [mailto:rickert () ocn ad jp] 
Sent: Tuesday, March 11, 2003 8:15 PM
To: security-basics () securityfocus com
Subject: Re: Justifying the spend on a vulnerability scanner

Just a thought in this area...what do you think of Observer. Is it an
overpriced tool? Would it work for what Mr. Berry wants?


----- Original Message -----
From: "JM" <jamesmcgeeiom () onetel net uk>
To: "Leon Ward" <leon.ward () added-dimension co uk>;
<security-basics () securityfocus com>
Sent: Tuesday, March 11, 2003 11:49 PM
Subject: RE: Justifying the spend on a vulnerability scanner


Sorry

Should have made the request a little clearer.

We are a W32 house, No *nix, so stuff like nessus, are out of
the window.

I also would like a tool that management can use to see how
easy it is, so really command line stuff is out the window
too.

Thanks again






Current thread: