Follow us on Twitter
  1. binushacker #Slide #Presentation Neil Strauss' Who's Got Game - SCRIPT CARD Examples http://t.co/6y9EtAuv #Security #Hacking
  2. itaudithk IT Audit: #Hacking: Hacktivists claim takedown of Chicago police Web site http://t.co/kTvRgW4o
  3. Hacking_Scandal #notw #hacking Cameron celebrates Chelsea's Champions League win next to Obama and Angela M... http://t.co/c3SxcCIa http://t.co/nUA4wElB
  4. HackingScandal #notw #hacking Cameron celebrates Chelsea's Champions League win next to Obama and Angela M... http://t.co/js71gKv1 http://t.co/YpMgeYP5
  5. VijayUpadhyaya Can anyone suggest if iOS hackers handbook is worth buying? I am seeing many bad reviews on amazon. #iOS #Apple #jailbreak #Hacking
  6. jacquesurbanska RT @arts_numeriques: #hack #hacking #hackers news nouvelle édition http://t.co/0xCK7ryW ▸ Aujourd'hui à la UNE: @erebus11235
  7. Eadwan Bug #643 (New): arduino bugs after teensy support added http://t.co/3RKY1KHl #backtrack #Hacking
Login
User Rating: / 2
PoorBest 

I have got to say that the inclusion of Nessus in Backtrack 5 is great. This makes performing a basic vulnerability scan easy.

nessus


Everything you need is pre-installed so you can literally start a test scan (on a test system) in under 5 minutes, you simply need to:

1) Get a free home-use key on the Tenable/Nessus website
2) Enter the key as follows

/opt/nessus/bin/nessus-fetch --register xxxx-xxxx-xxxx-xxxx

3) Create a user and password (and hit enter to skip the rules)

/opt/nessus/sbin/nessus-adduser

4) Start the service

/etc/init.d/nessusd start

5) Start the scan, and view the report

https://localhost:8834/


The Nessus user-interface is so straight-forward that don't think there is any point in me describing where to click or what to put in. Just play with it for a minute or two and you should see how it works.

Using Nessus to scan a set of machines really is a no-brainer. Here is a sample report (This XP systems needs patching ;o)

nessus1

Whilst this is no substitute for a Penetration test, a basic vulnerability scan can certainly help identify computers that are missing patches, or have poor configurations.



Voeg deze pagina toe aan uw favoriete Social Bookmarking websites
Reddit! Del.icio.us! Mixx! Free and Open Source Software News Google! Live! Facebook! StumbleUpon! nujij msnrep ekudos TwitThis Joomla Free PHP

Last Updated (Saturday, 04 June 2011 00:21)

 

Add comment


Security code
Refresh

Last comments