RE: VA vs PT tool

2003-06-16 Thread Rosado, Rafael (Rafael)
delete this message. -Original Message- From: Brad Mills [mailto:[EMAIL PROTECTED] Sent: Friday, June 13, 2003 10:19 PM To: James Fields; [EMAIL PROTECTED] Cc: [EMAIL PROTECTED] Subject: Re: VA vs PT tool James, et al - > I didn't see this on your list below but I would be s

Re: VA vs PT tool

2003-06-16 Thread Brad Mills
James, et al - > I didn't see this on your list below but I would be surprised if no one > had suggested it... > > Nessus (www.nessus.org) will do *some* of that depending upon the > vulnerability and how you configure Nessus to do the scan. The > following are advantages/disadvantages dependin

RE: VA vs PT tool

2003-06-13 Thread Cirelli, Keith(LBS)
This may sound like the long way of doing things and may be just my philosophy on VA & PT but, I've seen Security people get complacent about "real" security. Some tend to think just running a 'canned' tool is enough and that these tools "find everything" and/or if it finds nothing..."ok..we're

Re: VA vs PT tool

2003-06-13 Thread James Fields
I didn't see this on your list below but I would be surprised if no one had suggested it... Nessus (www.nessus.org) will do *some* of that depending upon the vulnerability and how you configure Nessus to do the scan. The following are advantages/disadvantages depending upon your point of view: 1