On Mon, Dec 13, 2010 at 7:27 AM, Mitch Pirtle <[email protected]>wrote:
> On Fri, Dec 10, 2010 at 6:39 PM, Scott Wolpow <[email protected]> wrote: > > Does any one know of a good service to scan a server for security issues, > > besides Joomla centric? > > You're best off doing some scanning on your own, if only to be > slightly edumucated on such practices. There are great free tools out > there too: > > nmap - http://nmap.org/ > nessus - http://www.nessus.org/nessus/intro.php > > Actually, unless it is for your own personal use[ie not scanning a client site], nessus costs about 1200/year. If you really want open source, OpenVAS is currently active[currently working on v4 beta]. It was, initially, a fork of Nessus 2.0 back in 2005 when Nessus 3.0 was released under its new closed source model. As of 2008 Nessus no longer provides an 7 day delayed feed of security tests and will not include any GPL tests anymore. So OpenVAS is probably your best bet.
_______________________________________________ New York PHP SIG: Joomla! Mailing List http://lists.nyphp.org/mailman/listinfo/joomla NYPHPCon 2006 Presentations Online http://www.nyphpcon.com Show Your Participation in New York PHP http://www.nyphp.org/show_participation.php

