- Cybersecurity:Attack and Defense Strategies
- Yuri Diogenes Erdal Ozkaya
- 212字
- 2021-06-30 19:16:02
Nessus
This is a free scanning tool made and distributed by Tenable Network Security. It is among the best network scanners and has bagged several awards for being the best vulnerability scanner for white hats. Nessus has several functionalities that may come in handy for an attacker doing internal reconnaissance. The tool can scan a network and show connected devices that have misconfigurations and missing patches. The tool also shows the devices that are using their default passwords, weak passwords, or have no passwords at all.
The tool can recover passwords from some devices by launching an external tool to help it with dictionary attacks against targets in the network. Lastly, the tool is able to show abnormal traffic in the network, which can be used to monitor DDoS attacks. Nessus has the ability to call to external tools to help it achieve extra functionality. When it begins scanning a network, it can call to NMap to help it scan for open ports and will automatically integrate the data that NMap collects. Nessus is then able to use this type of data to continue scanning and finding out more information about a network using commands scripted in its own language. The following diagram shows a screenshot of Nessus displaying a scan report:

- Linux設備驅動開發詳解:基于最新的Linux4.0內核
- Linux運維之道(第3版)
- Containerization with LXC
- 零起點學Linux系統管理
- Mobile-first Bootstrap
- Installing and Configuring Windows 10:70-698 Exam Guide
- Linux網絡內核分析與開發
- Java EE 8 Design Patterns and Best Practices
- 網絡操作系統管理與應用(第三版)
- Mobile First Design with HTML5 and CSS3
- 操作系統分析
- 分布式高可用架構之道
- Learn CUDA Programming
- 從實踐中學習Windows滲透測試
- Advanced Infrastructure Penetration Testing