Vulnerability scanning tools: Difference between revisions
Jump to navigation
Jump to search
mNo edit summary |
mNo edit summary |
||
| Line 2: | Line 2: | ||
[https://www.qualys.com/forms/freescan/ Qualys FreeScan | Free Vulnerability Scanner] | [https://www.qualys.com/forms/freescan/ Qualys FreeScan | Free Vulnerability Scanner] | ||
* 公司/維護者: [https://www.qualys.com/ Qualys, Inc.] | |||
* 作業系統: N/A 不需安裝軟體,透過網站服務,輸入要掃描的網站網址即可掃描。 {{Gd}} | * 作業系統: N/A 不需安裝軟體,透過網站服務,輸入要掃描的網站網址即可掃描。 {{Gd}} | ||
* 授權: 商業 | * 授權: 商業 | ||
| Line 8: | Line 9: | ||
[https://github.com/sullo/nikto sullo/nikto: Nikto web server scanner] | [https://github.com/sullo/nikto sullo/nikto: Nikto web server scanner] | ||
* 公司/維護者: [https://cirt.net/ CIRT.net | Suspicion Breeds Confidence] | |||
* 作業系統: {{Win}}, {{Linux}} & {{Mac}} | * 作業系統: {{Win}}, {{Linux}} & {{Mac}} | ||
* 授權: [https://cirt.net/nikto2-docs/licences.html GNU General Public License (GPL)] | * 授權: [https://cirt.net/nikto2-docs/licences.html GNU General Public License (GPL)] | ||
| Line 14: | Line 16: | ||
[http://www.acunetix.com/ Website security with Acunetix] v.11 產生報表可區分 ISO 27001, NIST SP800 53, OWASP Top 10 2013, PCI DSS 3.2, Sarbanes Oxley, STIG DISA, WASC Threat Classification 等類型。 | [http://www.acunetix.com/ Website security with Acunetix] v.11 產生報表可區分 ISO 27001, NIST SP800 53, OWASP Top 10 2013, PCI DSS 3.2, Sarbanes Oxley, STIG DISA, WASC Threat Classification 等類型。 | ||
* 公司/維護者: Acunetix | |||
* 作業系統: {{Win}} | * 作業系統: {{Win}} | ||
* 授權: 商業 | * 授權: 商業 | ||
| Line 20: | Line 23: | ||
[http://www-03.ibm.com/software/products/en/appscan-standard IBM Security AppScan Standard] | [http://www-03.ibm.com/software/products/en/appscan-standard IBM Security AppScan Standard] | ||
* 公司/維護者: IBM | |||
* 作業系統: {{Win}} | * 作業系統: {{Win}} | ||
* 授權: 商業 | * 授權: 商業 | ||
| Line 26: | Line 30: | ||
[http://www.golismero.com/ Golismero Project. The web knife.] ([https://github.com/golismero/golismero github]) | [http://www.golismero.com/ Golismero Project. The web knife.] ([https://github.com/golismero/golismero github]) | ||
* 公司/維護者: Golismero | |||
* 作業系統: {{Win}}, {{Linux}} & {{Mac}} | * 作業系統: {{Win}}, {{Linux}} & {{Mac}} | ||
* 授權: GNU GENERAL PUBLIC LICENSE Version 2, June 1991 ([https://github.com/golismero/golismero/blob/master/LICENSE LICENSE] 檔案) | * 授權: GNU GENERAL PUBLIC LICENSE Version 2, June 1991 ([https://github.com/golismero/golismero/blob/master/LICENSE LICENSE] 檔案) | ||
| Line 32: | Line 37: | ||
[https://github.com/Te-k/phpscanner Te-k/phpscanner: Php Scanner for malicious files] | [https://github.com/Te-k/phpscanner Te-k/phpscanner: Php Scanner for malicious files] | ||
* 公司/維護者: | |||
* 作業系統: N/A | * 作業系統: N/A | ||
* 授權: [https://github.com/Te-k/phpscanner/blob/master/LICENSE MIT License] | * 授權: [https://github.com/Te-k/phpscanner/blob/master/LICENSE MIT License] | ||
| Line 38: | Line 44: | ||
[http://www8.hp.com/us/en/software-solutions/webinspect-dynamic-analysis-dast/index.html?#.Uuf0KBAo4iw Dynamic Analysis, DAST, Penetration Testing Tools | Hewlett Packard Enterprise] | [http://www8.hp.com/us/en/software-solutions/webinspect-dynamic-analysis-dast/index.html?#.Uuf0KBAo4iw Dynamic Analysis, DAST, Penetration Testing Tools | Hewlett Packard Enterprise] | ||
* 公司/維護者: HP | |||
* 作業系統: {{Win}} | * 作業系統: {{Win}} | ||
* 授權: 商業 | * 授權: 商業 | ||
| Line 44: | Line 51: | ||
[https://info.beyondtrust.com/community.html Retina Network Community - BeyondTrust] 比較是掃描作業系統,而不是掃描網站應用 | [https://info.beyondtrust.com/community.html Retina Network Community - BeyondTrust] 比較是掃描作業系統,而不是掃描網站應用 | ||
* 公司/維護者: BeyondTrust | |||
* 作業系統: {{Win}} | * 作業系統: {{Win}} | ||
* 授權: 商業 | * 授權: 商業 | ||
| Line 51: | Line 59: | ||
<pre> | <pre> | ||
軟體名稱 | 軟體名稱 | ||
* 公司/維護者: | |||
* 作業系統: | * 作業系統: | ||
* 授權: | * 授權: | ||
Revision as of 15:56, 5 December 2016
資訊系統安全性漏洞的檢測工具
Qualys FreeScan | Free Vulnerability Scanner
- 公司/維護者: Qualys, Inc.
- 作業系統: N/A 不需安裝軟體,透過網站服務,輸入要掃描的網站網址即可掃描。

- 授權: 商業
- 試用版限制: 10 次免費的掃描
- 檔案掃毒: N/A
sullo/nikto: Nikto web server scanner
- 公司/維護者: CIRT.net | Suspicion Breeds Confidence
- 作業系統: Win
, Linux
& macOS
- 授權: GNU General Public License (GPL)
- 試用版限制:
- 檔案掃毒: ok
Website security with Acunetix v.11 產生報表可區分 ISO 27001, NIST SP800 53, OWASP Top 10 2013, PCI DSS 3.2, Sarbanes Oxley, STIG DISA, WASC Threat Classification 等類型。
- 公司/維護者: Acunetix
- 作業系統: Win
- 授權: 商業
- 試用版限制: (1) 只能試用 14 天、(2) 掃描報告會說有怎樣的風險問題(vulnerability),但是不會說明問題是出在哪個地方

- 檔案掃毒: safe
Golismero Project. The web knife. (github)
- 公司/維護者: Golismero
- 作業系統: Win
, Linux
& macOS
- 授權: GNU GENERAL PUBLIC LICENSE Version 2, June 1991 (LICENSE 檔案)
- 試用版限制:
- 檔案掃毒: 有問題 VirusTotal 偵測率: 5/54
Te-k/phpscanner: Php Scanner for malicious files
- 公司/維護者:
- 作業系統: N/A
- 授權: MIT License
- 試用版限制:
- 檔案掃毒: 有問題 VirusTotal 偵測率: 3 / 55
Dynamic Analysis, DAST, Penetration Testing Tools | Hewlett Packard Enterprise
Retina Network Community - BeyondTrust 比較是掃描作業系統,而不是掃描網站應用
軟體名稱 * 公司/維護者: * 作業系統: * 授權: * 試用版限制: * 檔案掃毒:
References