Penetration Testing mailing list archives

Re: Alternatives to Nessus


From: Michael Wiegand <michael.wiegand () intevation de>
Date: Mon, 23 Mar 2009 14:57:51 +0100

* jond [21. Mar 2009]:
Has anyone found any good alternatives to Nessus?
I've played around with OpenVAS with their backtrack build, but either
it's not pulling all the plugins, or it's just not as accurate as
Nessus.

Being one of the OpenVAS developers I might be a little biased, but I
would consider OpenVAS to be mature enough (especially in the latest
versions) to be good and Free alternative to Nessus.

I'm sorry to hear that your experience was not completely positive and
would like to help you with any trouble you might have had.

Right now, OpenVAS is still missing a few plugins which could be carried
over from Nessus due to licensing issue. The OpenVAS plugin developers
are working on replacements, we hope to have them ready in the near
future.

Furthermore, there have been reports of missing results when performing
concurrent checks on certain targets; it might help to "Concurrent
Checks" to 1 in the OpenVAS client.

I seem to recall that there were some issues with Backtrack environment,
that might be another starting point.

It would be very helpful for us to know more about the issues you are
experiencing; you are welcome to join us in #openvas on irc.oftc.net or
on the mailing lists listed on the OpenVAS website at
http://www.openvas.org/. If you have discovered issues you consider to
be bugs, feel free to report them on http://bugs.openvas.org/.

Feel free to contact me if you have any questions or suggestions.

Regards,

Michael 

-- 
Michael Wiegand | OpenPGP: D7D049EC | Intevation GmbH - www.intevation.de
Neuer Graben 17, 49074 Osnabrück, Germany   |    AG Osnabrück, HR B 18998
Geschäftsführer: Frank Koormann,  Bernhard Reiter,  Dr. Jan-Oliver Wagner

Attachment: _bin
Description:


Current thread: