본문 바로가기
IT 와 Social 이야기

취약점 분석(Vulnerability Assessments) 솔루션 소개 : Host Scanner

by manga0713 2012. 8. 13.




○ Host Scanners List


1. Assuria Auditor and Auditor RA

2. Infiltration Systems Infiltrator for Home Users

3. Microsoft® Attack Surface Analyzer

4. NileSOFT Secuguard SSE

5. Numara® Vulnerability Manager

6. Proland Protector Plus Windows Vulnerability Scanner

7. SoftRun Inciter Vulnerability Manager

8. ThreatGuard® Secutor

9. Key Resources VAT




1. Assuria Auditor and Auditor RA


Type Host Scanner
Target(s) Auditor: Windows (NT, 2000, Server 2003/2008/2008 R2)
UNIX (Solaris 7-10x86 for SPARC®); [Scalable Performance ARChitecture] AIX 5.1-6.1; HP-UX for PA-RISC [Reduced Instruction Set Computer] or Itanium 11+); Linux (Red Hat Enterprise 3/4, SuSE Enterprise X86
and 10 IBM Z series); VMware ESX 3.5/4.1

Auditor RA: Windows (Server 2003 32-bit, Server 2008 64-bit, Server 2008 R2 64-bit, 7); Linux (Red Hat ES 3/4 32 & 64-bit, ES 5 64-bit only, SuSE Linux Enterprise
systems); VMware ESX/ESXi 4
Format Software
OS Auditor Agents: Windows (NT, 2000, Server 2003/2008/2008 R2); UNIX (SPARC Solaris 7-10x86); IBM AIS 5.1-6.1; HP-UX PA-RISC or Itanium 11+); Linux
(Red Hat Enterprise 3/4, SuSE Enterprise X86 and 10 IBM
Z series); VMware ESX 3.5/4.1
Auditor/Auditor RA Console: Windows Server 2003/2008/2008 R2 x64 running Microsoft SQL Server 2005/2008
Hardware  
License Shareware
SCAP Validated  
Standards CVE, CVSS
Supplier Assuria, Ltd. (UK)
Information http://www.assuria.com/products-new/assuria-auditor.html
http://www.assuria.com/products-new/assuria-auditor-ra.html



2. Infiltration Systems Infiltrator for Home Users


Type Host Scanner
Target(s)  
Format Software
OS Windows 2000/XP
Hardware 128MB RAM, 3MB disk
License Shareware
SCAP Validated  
Standards  
Supplier Infiltration Systems/Spytech Software and Design, Inc.
Information http://www.infiltration-systems.com/infiltrator-home.shtml
 



3. Microsoft® Attack Surface Analyzer


Type Host Scanner
Target(s) Windows 7, Vista, Server 2008 R1/R2
Format Software
OS Windows 7
Hardware x86, IA64, x64
License Freeware
SCAP Validated  
Standards  
Supplier Microsoft Corporation
Information http://www.microsoft.com/en-us/download/details.aspx?id=24487
 



4. NileSOFT Secuguard SSE


Type Host Scanner
Target(s) UNIX (UNIXware 7.x, OpenUNIX, FreeBSD, Solaris 2.x, AIX 4.x-5.x, HP-UX 10.x-11.x, Tru64, other UNIX versions),
Linux (Red Hat 6.x-7.x, Power Linux, OpenLinux),
Windows (NT, 2000, XP, Server 2003)
Format Software
OS Console: Windows NT/2000/XP
Agent: see list of targets
Hardware Console: 300MB disk (500MB recommended)
Agent: 50MB disk (100MB recommended)
License Commercial
SCAP Validated  
Standards CVE
Supplier NileSOFT (South Korea)
Information http://www.nilesoft.co.kr/
 



5. Numara® Vulnerability Manager


Type Host Scanner
Target(s) Windows, Mac OS, Linux, UNIX, IOS, CatOS
Format Software
OS Master server: Windows (2000/03/08/7(Standard/Web/Enterprise/Small Business Editions)/ XP/Vista, 32 & 64-bit);
Linux (Red Hat Enterprise 4/5, SuSE 10, CentOS 4/5, Debian 5); can run on VMware ESXi, VMware Infrastructure, and Microsoft Hyper-V Core Server 2008
R2 with same OS/database
Database server: Same OSs, with SQL Server 2005/2008 R2 (Express, Standard, Enterprise) 32/64-bit; Oracle 9i or
10g; PostgreSQL 8/9
Client and Relay: Windows 2000 Pro SP4, Server 2000/2003/2008 (Standard, Web, Enterprise, Small Business), XP, Vista SP1, 7 32 & 64-bit;
Linux (Red Hat Enterprise 4/5, SuSE 10/11, CentOS 4/5,
Debian 4, Ubuntu 10.04);
Console requires JRE 1.6+ (included with tool software);
on Windows 64-bit OS JRE 1.6 update 17+
Hardware Master Server, <500 targets: Pentium 2.2GHz Core 2 Duo x86, 2GB RAM, 50GB disk; 500-2,000 targets: 3.2GHz Pentium Core 2 Duo x64, 4GB RAM, 100GB disk;
2,001-10,000 targets: 3.2GHz Xeon® Dual Core x86, 4GB RAM, 100GB disk; >10,000 targets: enquire Separate Database Server, <500 targets: not needed; 500-2,000 targets: 3.2GHz Pentium Core 2 Duo x64, 4GB RAM, 80GB disk; 2,001-10,000 targets: 3.2GHz Xeon® Dual Core x86, 4GB RAM, 80GB disk; >10,000 targets: enquire
Relay (1 per every 2,000 nodes), <500 targets: not needed, but if desired, Pentium D, 1GB RAM, 10GB disk; 500-10,000 targets: 2.2GHz Pentium Core 2 Duo x86, 2GB RAM, 50GB disk; >10,000 targets: enquire
License Commercial
SCAP Validated  
Standards  
Supplier Numara Software, Inc.
Information http://www.numarasoftware.com/resources/footprints/brochures/
 



6. Proland Protector Plus Windows Vulnerability Scanner


Type Host Scanner
Target(s)  
Format Software
OS Windows Vista, XP, 2000 Pro/Server, 2003 Server, 7
Hardware  
License Freeware
SCAP Validated  
Standards  
Supplier Proland Software (India)
Information http://www.pspl.com/download/winvulscan.htm
 



7. SoftRun Inciter Vulnerability Manager


Type Host Scanner
Target(s) Microsoft operating systems and applications
Format Software
OS Windows (2000, Server 2003/2008, XP, Vista)
Hardware  
License Commercial
SCAP Validated  
Standards CVE
Supplier SoftRun, Inc. (South Korea)
Information http://www.softrun.com/en/vulnerability_info.asp
 



8. ThreatGuard® Secutor


Type Host Scanner
Target(s) Windows; UNIX (Solaris, HP-UX); Linux (Red Hat Enterprise); Cisco IOS
Format Software
OS Windows 2003, 2008 Server, XP, Vista
Hardware  
License Commercial
SCAP Validated http://nvd.nist.gov/validation_threatguard.cfm
Standards SCAP, CVE, OVAL, CVSS
Supplier ThreatGuard, Inc.
Information http://threatguard.com/products/
http://threatguard.com/downloads



9. Key Resources VAT


Type Host Scanner
Target(s) IBM z/Series z/OS
Format Software
OS IBM z/OS
Hardware IBM mainframe running z/OS
License Commercial
SCAP Validated  
Standards  
Supplier Key Resources, Inc.
Information http://www.vatsecurity.com/VAT_Software.html