PaulDotCom mailing list archives

Re: vulnerability scanners


From: Michael Douglas <mick () pauldotcom com>
Date: Tue, 31 Aug 2010 12:52:47 -0400

If time permits, you should try to get a demo from each vendor.  The
try-before-you-buy model is what I always recommend.  Every now and
then I'm pleasantly surprised by some dark horse or completely OSS
product.

Here's some items I'd look into were I in your shoes.
- Nessus
- Nexpose
- OpenVAS


Since you mentioned Core, you might also want to look into metasploit or Canvas.



I have my preferences, but they might not be *your* preferences.
Choice is a good thing.  ;-)



Happy hunting!
- Mick


On Tue, Aug 31, 2010 at 12:43 PM, Butturini, Russell
<Russell.Butturini () healthways com> wrote:
Much as I know people will probably hate to hear this, if you can tolerate
their annoying salespeople, Nexpose is definitely worth a look.



From: pauldotcom-bounces () mail pauldotcom com
[mailto:pauldotcom-bounces () mail pauldotcom com] On Behalf Of Andrew Anderson
Sent: Tuesday, August 31, 2010 11:02 AM

To: PaulDotCom Security Weekly Mailing List
Subject: [Pauldotcom] vulnerability scanners



So I'm looking to justify the purchase of a vulnerability scanning product
and am looking for some objective opinions.

I am partial to Nessus, due in part to the fact that I have used it before
and it's price is really attractive.
I am looking at Core as well - trying to figure out which on of their
products lines up best with Nessus proffesional feed (for comparisons).

Can anyone point me to a decent third party comparison online?
Does anyone have any suggestions for a  third contender for my list?

******************************************************************************
This email contains confidential and proprietary information and is not to
be used or disclosed to anyone other than the named recipient of this email,
and is to be used only for the intended purpose of this communication.
******************************************************************************

_______________________________________________
Pauldotcom mailing list
Pauldotcom () mail pauldotcom com
http://mail.pauldotcom.com/cgi-bin/mailman/listinfo/pauldotcom
Main Web Site: http://pauldotcom.com

_______________________________________________
Pauldotcom mailing list
Pauldotcom () mail pauldotcom com
http://mail.pauldotcom.com/cgi-bin/mailman/listinfo/pauldotcom
Main Web Site: http://pauldotcom.com


Current thread: