A vulnerability scanner is a computer program designed to search for and map systems for weaknesses in an application, computer or network. Step 1, typically the scanner will first look for active IP addresses, open ports, OSes and any applications running. Step 2, It may at this point create a report or move to the next step. Step 3, try to determine the patch level of the OS or applications. In this process the scanner can cause an exploit of the vulnerability such as crash the OS or application. Step 4, the final phase the scanner may attempt to exploit the vulnerability. Scanners may either be malicious or friendly. Friendly scanners usually stop at step 2 and occasionally step 3 but never go to step 4.

Types of vulnerability scanners

  • Port Scanner
  • Network Scanner
  • Web Application Security Scanner
  • Computer worm

Friendly types of vulnerability scanners:

  • CGI Scanner (usually restricted to banner checking; cgi scanners can find vulnerable scripts but usually don't exploit them)

Network reconnaissance

Vulnerability Scanners can be used to conduct network reconnaissance, which is typically carried out by a remote attacker attempting to gain information or access to a network on which he is not authorized or allowed. Network reconnaissance is increasingly being used to exploit various network standards and automated communication methods in order to determine what types of computers are present, along with additional information about those computers, such as the type and version of its operating system. This information can be analyzed for known or recently discovered vulnerabilities that can be exploited to gain access to secure networks and computers. Network reconnaissance is possibly one of the most common applications of passive data analysis. Early generation techniques, such as TCP/IP passive fingerprinting, have accuracy issues that tended to make it ineffective. Today, numerous tools exist on the Internet that have been developed to make reconnaissance easier and more effective.

References

  1. ^ What is a CGI Scanner?
  2. ^ http://insecure.org/presentations/Shmoo06/shmoo-fyodor-011406.pdf Advanced Network Reconnaissance with Nmap
  3. ^ http://www.arxceo.com/documents/ISSA_antirecon_article.pdf Network Reconnaissance defense techniques from ISSA
  4. ^ http://www.sift.com.au/36/172/xml-port-scanning-bypassing-restrictive-perimeter-firewall.htm XML Port Scanning Attacks

Programs

  • Port scanners (Nmap)
  • Network scanners (Nessus, SAINT, OpenVAS)
  • List of Web Application Security Scanners
  • CGI scanners (Arirang; Nikto; Whisker)
  • List of Vulnerability Scanners

Advanced Port Scanner 1.3 (Free) - Small, fast, robust and easy-to-use ...

Advanced Port Scanner 1.3 (Free) - Small, fast, robust and easy-to use port scanner for Windows which uses a multithread technique, so you can scan ports very fast!

...

PC Flank: Make sure you're protected on all sides.

Advanced Port Scanner. The Advanced Port Scanner will test your system for open ports that can be used in attacks on your computer. You can select which scanning technique will be ...

...

Free advanced port scanning tool

I always am needing to know which ports are being used by my computers. Whether it is for security reasons or for debugging port accessing programs, Advanced Port Scanner is a ...

...

PC Flank: Make sure you're protected on all sides.

Trojans Test: Advanced Port Scanner: Exploits Test Ask the experts: Leak Tests Catalog NEW! FAQ: Glossary Security Center: Software Store

...

advanced port scanner.exe - What is advanced port scanner.exe?

advanced port scanner.exe or advanced port scanner process info for

...

Advanced Port Scanner Freeware download and review - port scanner from ...

Advanced Port Scanner is a small, fast and easy-to-use port scanner that runs multi-threaded for o

...

|MG| Advanced Port Scanner 1.3 Download

Download Advanced Port Scanner 1.3 ... ... Advanced Port Scanner is a small, very fast, robust and easy-to-use Port Scanner for Windows.

...

Advanced Port Scanner - Free software downloads and software reviews ...

Advanced Port Scanner is a small, fast, robust and easy-to-use port scanner for Win32 platform.

...

Advanced Port Scanner 1.3 - Advanced Port Scanner is a small, fast and ...

Advanced Port Scanner 1.3 Advanced Port Scanner is a small, fast and easy-to-use Port Scanner for Windows. It is multithreaded, so you can scan ports in just a few seconds.

...

Advanced Port Scanner - Jumbo! Utilities

Advanced Port Scanner, Famtech Information Services Ltd., A small, fast and easy-to-use Port Scanner for Windows.

...