본문 바로가기
IT 와 Social 이야기/Security

취약점 분석(Vulnerability Assessments) 솔루션 소개 : Network Scanner

by manga0713 2012. 8. 12.


[이미지 출처 : SECPOINT]



○ Network Scanner List


1. Beyond Security Automated Vulnerability Detection System

2. Black Falcon/Net Security Suite Falcon Vulnerability Analysis

3. DragonSoft Vulnerability Management

4. eEye® Retina® Network

5. Fortinet® FortiScan 4.1.0

6. FuJian RongJi RJ-iTOP

7. GFI LANguard® 9.6

8. GFI Sunbelt Network Security Inspector Suite 2.0

9. Global DataGuard® Unified Enterprise Security: Vulnerability Scanner Module

10. Greenbone Security Feed and Security Manager 1.4

11. Hangzhou DPtech Scanner1000

12. IBM® Proventia® Network Enterprise Scanner 2.3

13. Infiltration Systems Infiltrator 2009

14. Inverse Path TPOL

15. Lumension® Scan

16. McAfee® Vulnerability Manager

17. nCircle® IP360

18. netVigilance SecureScout® SecureScout Easybox 2.0 Scanner

19. netVigilance SecureScout® (Enterprise Edition)

20. netVigilance SecureScout® (Windows Edition)

21. NGSSecure NGS Typhon III

22. NileSOFT Secuguard NSE

23. NSasoft Nsauditor

24. Safety-Lab Shadow Security Scanner

25. Security System Analyzer 2.0 Beta

26. StillSecure® VAM 5.5

27. Xacta® IA Manager

28. ZOHO® ManageEngine® Security Manager Plus Network Security Scanner component




1. Beyond Security Automated Vulnerability Detection System


Type Network Scanner
Target(s) Hosts: Windows (95/98/NT 4.0/ 2000/ XP/ 2003 Server); UNIX (Solaris®, AIX® [Advanced Interactive eXecutive], HP-UX® [Hewlett-Packard UniX], Unixware®, OpenBSD [Open Berkeley Software Distribution],
NetBSD,
Mac OS [Macintosh OS 10]® X,
Linux®); Novell® NDS [Netware Directory Services]; AS [Application System] 400; VMS); Digital Equipment
Corporation Virtual Memory System] DEC VMS;
Security systems: Antivirus servers, IDS, firewalls; Network devices: routers, switches, hubs, wireless access points, modems, voice-over-IP devices;
Servers: remote access servers, Web servers, database servers, mail servers, FTP servers, proxy servers; Applications: in SQL, Active Server Pages (ASP), PHP
Hypertext Preprocessor (PHP), Common Gateway Interface (CGI) scripting languages
Format Appliance
OS Include
Hardware Include
 
 
License Commercial
SCAP Validated  
Standards CVE
Supplier Beyond Security (U.S./Israel)
Information http://www.beyondsecurity.com/vulnerability-assessment.html



2. Black Falcon/Net Security Suite Falcon Vulnerability Analysis


Type Network Scanner
Target(s) Wired and wireless network devices,
OSs,
Web applications/services,
databases
Format Scanner: Appliance
Console: Software
OS Console: Windows, Linux, UNIX, Mac OS X
Hardware  
 
 
License Commercial
SCAP Validated  
Standards CVE, CVSS
Supplier BlackFalcon/Net Security Suite (Colombia)
Information http://www.netsecuritysuite.com/fav.html



3. DragonSoft Vulnerability Management


Type Network Scanner
Target(s) Network services, network devices (gateways, routers, switches),
Hosts (Windows NT®/2000/2003/XP®),
UNIX (Solaris, FreeBSD®, AIX),
Linux hosts,
SQL databases (MySQL®, PostgreSQL, MiniSQL, Oracle®, SQL Server®, Database 2 [DB2®]),
Web sites (HTTP) including Web directory exploration, electronic mail (Email) Servers, file servers, Samba Servers
Format Software
OS Windows 2000/XP/2003 running Internet Explorer (IE) 5.0+ or Firefox® 3.0+
Hardware 512 Megabytes (MB) RAM, 40GB disk, Compact Disc/Digital Video Disk-Read Only Memory (CD/DVD-ROM), fast Ethernet/wireless NIC
 
License Commercial
SCAP Validated  
Standards CVE, CVSS
Supplier Dragon Soft Security Associates, Incorporated (Inc.) (Taiwan)
Information http://www.dragonsoft.com/product/engDVM_01.php



4. eEye® Retina® Network


Type Network Scanner
Target(s) Wired and wireless network devices,
OSs,
Web applications/services,
databases
Format Software
OS Windows (2000 Pro/Server, XP; Server 2003; Vista Service Pack (SP) 2,
Server 2008 SP2/Server 2008 R2 [64-bit only], 7);
all running Microsoft .NET Framework 2.0
Hardware 1.4 GigaHerz (GHz) Pentium®, 512MB RAM, 80MB disk, NIC with TCP/IP enabled
 
License Commercial
SCAP Validated http://nvd.nist.gov/validation_eeye.cfm
Standards SCAP, OVAL, CVE, CVSS
Supplier eEye Digital Security®
Information http://www.eeye.com/Products/Retina/Network-Security-Scanner



5. Fortinet® FortiScan 4.1.0


Type Network Scanner
Target(s) OSs (AIX, OS/400, HP-UX, Solaris, Tru64® UNIX, Red Hat Linux, Bluepoint Linux, Xterm, Red Flag Linux, Slackware,
FreeBSD, NetBSD, Santa Cruz Operation (SCO) UNIX, Windows NT/2000/XP/98/ Me®, Novell® Netware 5); Network devices (switches, routers, firewalls, IDS/IPS, etc.),
Databases (Oracle, SQL
Server, MySQL, etc.), network services
Format Appliance or Software
OS Windows 2000
Hardware 866 MHz Pentium III, 256MB RAM, 400MB disk, 10/100 million bits per second (Mbps) Ethernet NIC
 
License Commercial
SCAP Validated  
Standards CVE
Supplier FuJian RongJi Software Company, Ltd./
Yung-Based Enterprise Network Security Division (China)
Information http://www.rj-itop.com/



6. FuJian RongJi RJ-iTOP



7. GFI LANguard® 9.6


Type Network Scanner
Target(s) UNIX (must run Secure Shell [SSH]),
Windows (must run Windows Management Instrumentation [WMI])
Format Software
OS Windows (2000 Professional SP4+/Server SP4+/Advanced SP4+/Small Business SP2; Server 2003 standard/Enterprise/Small Business SP1; Server 2008
Standard/Enterprise/Small Business; Vista Business/Enterprise/Ultimate, XP Professional SP2+, 7 Ultimate) running .NET Framework 2.0 and SQL Server
2000+, Microsoft Data Engine/SQL Server Express, or Access®
Hardware 1-10 targets: 1GHz CPU, 1 gigabyte (GB) RAM, 1GB disk; 11-500 targets: 2GHz CPU, 2GB RAM, 2GB disk;
501-1,000 targets: Two 3GHz quad core CPUs, 4GB RAM,10GB disk
 
License Commercial (Freeware version available)
SCAP Validated  
Standards OVAL, CVE
Supplier G F I Software
Information http://www.gfi.com/lannetscan



8. GFI Sunbelt Network Security Inspector Suite 2.0


Type Network Scanner
Target(s) Windows (2000, 2003, 2008, XP/XP Embedded, Vista all editions [32/64-bit]);
Linux (Red Hat Enterprise 2.1-5.x, Fedora 6/7, Mandriva® 7.0/7.1, Software-und System Entwicklung [SuSE®] Open/ Enterprise 9.0-10.3);
UNIX (Solaris 2.5+, Mac OS X, HP-UX 10.x+, Tru64 4.0F+,OpenBSD 3.8+);
Cisco (IOS® [Internetwork Operating System], CatOS,
PIX®), HP networked printers
Format Software
OS Scanner: Windows running .NET 2.0
Console: Windows XP Professional SP2+ or Server 2003 SP1+ running a PDF viewer (e.g., Adobe® Acrobat® Reader)
Hardware 1GB RAM (2GB+ recommended), 20GB disk; 1024x768 res. monitor; TCP/IP NIC
 
License Commercial
SCAP Validated  
Standards CVE
Supplier G F I Software
Information http://www.sunbeltsoftware.com/business/sunbelt-network-security-inspector/



9. Global DataGuard® Unified Enterprise Security: Vulnerability Scanner Module


Type Network Scanner
Target(s)  
Format Appliance
OS  
Hardware  
 
License Commercial
SCAP Validated  
Standards OVAL, CVSS, CVE
Supplier Global DataGuard, Inc.
Information http://www.globaldataguard.com/products/vm.php



10. Greenbone Security Feed and Security Manager 1.4


Type Network Scanner
Target(s) Windows, Linux (Debian, Fedora, Mandriva, Red Hat, SuSE, Ubuntu) UNIX (Solaris, HP-UX), Cisco, and other vendors’ active network devices
Format Appliance or Software
OS SuSE Linux Enterprise Server Version 11 SP1 running OpenVAS Scanner Version 3.0.0
Hardware  
 
License Commercial
SCAP Validated  
Standards OVAL, CVE
Supplier Greenbone Networks Gesellschaft mit
beschränkter Haftung (GmbH) (Germany)
Information http://www.greenbone.net/solutions/gbn_feed.html
http://www.greenbone.net/solutions/gbn_manager.html



11. Hangzhou DPtech Scanner1000


Type Network Scanner
Target(s) Terminal equipment, routers, switches, network services
(SMTP/Post Office Protocol 3 [POP3], FTP, SNMP),
servers and clients running Windows, Linux, UNIX,
Web applications (HTTP/HTTP Secure [HTTPS] Web
servers, plug-ins)
Format Appliance
OS  
Hardware  
 
License Commercial
SCAP Validated  
Standards CVE
Supplier Hangzhou DPtech Technologies Company (Co.), Limited
(Ltd.) (China)
Information http://www.diputech.com/Products_Technology.php?id=102&m=7



12. IBM® Proventia® Network Enterprise Scanner 2.3


Type Network Scanner
Target(s) Networked devices and Windows hosts
Format Appliance
OS Include
Hardware Included (1U rackmount and smaller desktop formats)
 
License Commercial
SCAP Validated  
Standards CVE
Supplier IBM
Information http://www-01.ibm.com/software/tivoli/products/network-enterprise-scanner/



13. Infiltration Systems Infiltrator 2009


Type Network Scanner
Target(s)  
Format Software
OS Windows 2000/XP
Hardware 128MB RAM, 3MB Disk
 
License Shareware
SCAP Validated  
Standards  
Supplier Infiltration Systems/Spytech® Software and Design, Inc.
Information http://www.infiltration-systems.com/
infiltrator.s html



14. Inverse Path TPOL


Type Network Scanner
Target(s) Any Portable Operating System Interface
for unIX (POSIX)-compliant UNIX system
Format Software
OS Unix
Hardware 128MB RAM, 3MB disk
 
License Shareware
SCAP Validated  
Standards OVAL
Supplier Inverse Path S.r.l. [Società Responsabilità Limitata] (Italy)
Information http://www.inversepath.com/products.html



15. Lumension® Scan


Type Network Scanner
Target(s) Cisco (IOS, CatOS, PIX [Private Internet eXchange]);
HP (HP-UX 10.x+, Tru64 4.0F+, networked printers),
Linux (Fedora® 6/7, Mandriva 7.0/7.1, Red Hat
Enterprise 3/4/5, SuSE Open/Enterprise
(9/10.0/10.1/10.2/10.3, Oracle Linux 4/5);
Mac OS X; UNIX (OpenBSD 3.8+, Solaris 2.5+);
Windows (2000, XP, XP Embedded, 2003, 2008, 2008 R2,
Vista, 7) (The scanner can discover other network
devices, but cannot assess their vulnerabilities.)
Format Software
OS Windows (XP Professional SP3+, Vista SP2+, 7, Server
2003 SP2+, Server 2003 R2 SP2+, Server 2008 SP2+;
all 32-bit) running Microsoft SQL Server 2008
Hardware 2GHz Pentium-compatible CPU, 2GB RAM, 20GB disk,
100baseT NIC with Internet access, 1024x768 res. monitor
 
License Commercial
SCAP Validated  
Standards  
Supplier Lumension Security, Inc.
Information http://www.lumension.com/vulnerability-management/vulnerability-assessment-software.aspx



16. McAfee® Vulnerability Manager


Type Network Scanner
Target(s)  
Format Appliance or Software
OS Windows 2003 Server (32-bit) SP2+; can run on VMware® VI3/vSphere Elastic Sky X (ESX/ESXi);
 must have Microsoft SQL Server 2005 SP2+ with all hot fixes/patches
Hardware x86 2GHz+ multi-core (quad-core recommended) CPU, 2GB RAM (4GB recommended), 80GB+200GB disk
 
License Commercial
SCAP Validated http://nvd.nist.gov/validation_mcafee.cfm
Standards SCAP, OVAL, CVE, CVSS
Supplier McAfee
Information http://www.mcafee.com/us/products/vulnerability-manager.aspx



17. nCircle® IP360


Type Network Scanner
Target(s)  
Format Appliance
OS  
Hardware  
 
License Commercial
SCAP Validated http://nvd.nist.gov/validation_ncircle.cfm
Standards SCAP, OVAL, CVE, CVSS
Supplier nCircle Network Security, Inc.
Information http://www.ncircle.com/index.php?s=products_ip360



18. netVigilance SecureScout® SecureScout Easybox 2.0 Scanner


Type Network Scanner
Target(s)  
Format Appliance
OS  
Hardware  
 
License Commercial
SCAP Validated http://nvd.nist.gov/validation_ncircle.cfm
Standards CVE
Supplier netVigilance, Inc.
Information http://www.netvigilance.com/easybox



19. netVigilance SecureScout® (Enterprise Edition)


Type Network Scanner
Target(s)  
Format Software
OS Windows (2000 Pro/Standard Server/Advanced Server with SP3/SP4; XP Pro SP1-SP3; Server 2003 Standard/
Enterprise SP0-SP2); all versions: 32-bit only;
running Microsoft SQL Server 2000 Desktop Engine SP3
(provided by netVigilance with SecureScout shipment)
Hardware (Based on Easybox configuration) 2GHz Pentium IV, 256MB RAM, 10/100/1000Mbps NIC
 
License Commercial
SCAP Validated  
Standards CVE
Supplier netVigilance, Inc.
Information http://www.netvigilance.com/enterpriseedition



20. netVigilance SecureScout® (Windows Edition)


Type Network Scanner
Target(s)  
Format Software
OS Windows (2000 Pro/Standard Server/Advanced Server with SP3/SP4; XP Pro SP1-SP3; Server 2003 Standard/
Enterprise SP0-SP2); all versions: 32-bit only;
running SQL Server 2000 Desktop Engine SP3 (provided
by netVigilance with SecureScout shipment)
Hardware (Minimum requirements, based on Easybox configuration) 2GHz Pentium IV, 256MB RAM, 10/100/1000Mbps NIC
 
License Commercial
SCAP Validated  
Standards CVE
Supplier netVigilance, Inc.
Information http://www.netvigilance.com/windowsedition


21. NGSSecure NGS Typhon III


Type Network Scanner
Target(s) TCP/IP network services; Web protocols, NetBIOS, Lightweight Directory Access Protocol (LDAP) servers, Network File System (NFS) servers, UNIX servers, Cisco
ISO, Lexmark® Printer Admin,
MySQL, SQL Server , Oracle, DB@, Windows, IE
Format Software
OS Windows
Hardware  
 
License Commercial
SCAP Validated  
Standards  
Supplier NGSSecure (UK)
Information http://www.ngssecure.com/ngssecure/services/information-security-software/ngs-typhon-III.aspx



22. NileSOFT Secuguard NSE


Type Network Scanner
Target(s)  
Format  
OS Console: Windows (NT/95/98/2000/Me/XP), UNIX, Linux
Agents: Linux, Solaris
Hardware Hardware Console: 30MB disk
Agent: 10MB disk
License Commercial
SCAP Validated  
Standards CVE
Supplier NileSOFT (South Korea)
Information http://www.nilesoft.co.kr/



23. NSasoft Nsauditor


Type Network Scanner
Target(s)  
Format Software
OS Windows 7/2000/XP/2003/Vista
Hardware  
License Commercial
SCAP Validated  
Standards  
Supplier NSasoft Limited KLiability Corporation (LLC) (Armenia)
Information http://www.nsauditor.com/network_security/network_security_auditor.html



24. Safety-Lab Shadow Security Scanner


Type Network Scanner
Target(s) Networked hosts running UNIX, Linux, FreeBSD, OpenBSD, NetBSD, Solaris,
Windows (95/98/Me/NT/2000/XP, with or without .NET);
Cisco, HP, and other (not identified) networking devices
Format Software
OS Windows 95/98/ME/NT/2000/XP/2003/Vista/7
Hardware Included
License Commercial
SCAP Validated  
Standards  
Supplier Safety-Lab (Russia)
Information http://www.safety-lab.com/en/products/securityscanner.htm



25. Security System Analyzer 2.0 Beta


Type Network Scanner
Target(s) Networked hosts running Windows (XP, Vista, 7); IE 7/8, Vista and XP Firewalls
Format Software
OS  
Hardware  
License Open Source
SCAP Validated  
Standards OVAL, CVE
Supplier NETpeas, Societe Anonyme (SA) (Morocco)
Information http://code.google.com/p/ssa



26. StillSecure® VAM 5.5


Type Network Scanner
Target(s) TCP/UDP/IP networks and networked hosts running Linux
(including Red Hat), Solaris, HP-UX, AIX, Windows
Format Server: Appliance or Software
Console: Software
OS Server: Included (hardened Linux with MySQL database and Java® Database Connectivity)
Console: Linux or Windows running Firefox 0.9.3+ or Mozilla® 1.7+ or Windows running IE 6.0+ (browser must support 128-bit encryption)
Hardware VAM Server: 1.3GHz minimum (2GHz recommended) Intel Pentium® 4, 512MB RAM (1GB recommended), 36GB disk, 10/100baseT NIC (3Com or Intel),
CD-ROM drive
License Commercial
SCAP Validated  
Standards  
Supplier StillSecure®
Information http://www.stillsecure.com/vam/risk.php



27. Xacta® IA Manager


Type Network Scanner
Target(s) Networked hosts running Windows 2000/XP/2003/2008/Vista;
Mac OS X 10.4 (HostInfo legacy versions available for
UNIX, Red Hat Enterprise Linux, Solaris)
Format Software
OS Asset Manager Application: Windows Server 2003 64-bit/2008 64-bit
Asset Manager Database: Windows Server 2003/2008 or UNIX running SQL Server 2005/2008 or Oracle 10g/11g
Detect Server Application: Windows Server 2003/2008
Detect Server Database: Windows Server 2003/2008 or UNIX running Microsoft SQL Server 2005/2008 or Oracle
10g/11g
HostInfo Agents: Windows 2000/XP/2003/2008/Vista; Mac OS X 10.4 running Java Runtime Environment
(JRE)1.5+
Hardware Asset Manager Application: 2.6GHz+ dual core CPUs; 8GB RAM; 200GB disk
Asset Manager Database: 2.6GHz+ dual core CPUs; 8GB RAM (up to 10,000 targets)/16GB RAM (for > 10,000 targets); 300GB disk
Detect Server Application: 2.6GHz+ dual core CPUs; 8GB RAM; 100GB disk
Detect Server Database: 2.6GHz+ dual core CPUs; 8GB RAM; 200GB disk
License Commercial
SCAP Validated http://nvd.nist.gov/validation_telos.cfm
Standards SCAP, OVAL, CVE, CVSS
Supplier Xacta Corporation/Telos® Corporation
Information http://www.telos.com/cybersecurity/grc/continuous-assessment/index.cfm
http://www.telos.com/cybersecurity/grc/features/index.cfm



28. ZOHO® ManageEngine® Security Manager Plus Network Security Scanner component


Type Network Scanner
Target(s) TCP/IP networks
Format Software
OS Server: 32-bit Windows Vista (Business/Ultimate), XP Pro, Server 2008, Server 2003, Red Hat Linux (7.2/8.0/9.0),
Enterprise Linux AS/ES (2.1, 3.0, 4.0), Debian® GNU Linux
3.0/3.1
Agent: 32 or 64-bit Windows 7, Server 2008 (SP1/SP2/R2), Server 2003, XP Pro, NT SP6a (WS/Server), 2000 Pro/Server
Hardware Server: 1.8 GHz 32-bit Pentium, 512 MB RAM, 10GB+200MB disk, 56 thousand bits per second [bps] (Kbps)+ Internet connection (for updates)
Agent: 1.8 GHz Pentium, 256MB RAM; 50MB disk
License Commercial
SCAP Validated  
Standards  
Supplier ZOHO Corporation/ManageEngine
Information http://www.manageengine.com/products/security-manager/