Difference between revisions of "Vulnerability Scanning"

From wikieduonline
Jump to navigation Jump to search
Line 17: Line 17:
 
* [[Burp Suite]]
 
* [[Burp Suite]]
 
* [[OpenSCAP]]
 
* [[OpenSCAP]]
 +
* [[GitHub code scanning]]
  
 
== [[DevSecOps]] ==
 
== [[DevSecOps]] ==

Revision as of 16:09, 6 April 2022

The vulnerability scanner uses a database to compare details about the target attack surface. The database references known flaws, coding bugs, packet construction anomalies, default configurations, and potential paths to sensitive data that can be exploited by attackers.

Types of vulnerability scanners

  • Port Scanner: Probes a server or host for open ports
  • Network Enumerator: A computer program used to retrieve information about users and groups on networked computers
  • Network Vulnerability Scanner: A system that proactively scans for network vulnerabilities
  • Web Application Security Scanner: A program that communicates with a Web application to find potential vulnerabilities within the application or its architecture
  • Computer Worm: A type of self-replicated computer malware, which can be used to find out vulnerabilities

Tools

DevSecOps

Services

See also

Advertising: