NYCPHP Meetup

NYPHP.org

[joomla] Server Scans

Gary Mort garyamort at gmail.com
Mon Dec 13 13:48:45 EST 2010


On Mon, Dec 13, 2010 at 7:27 AM, Mitch Pirtle <mitch.pirtle at gmail.com>wrote:

> On Fri, Dec 10, 2010 at 6:39 PM, Scott Wolpow <scott at wolpow.com> wrote:
> > Does any one know of a good service to scan a server for security issues,
> > besides Joomla centric?
>
> You're best off doing some scanning on your own, if only to be
> slightly edumucated on such practices. There are great free tools out
> there too:
>
> nmap - http://nmap.org/
> nessus - http://www.nessus.org/nessus/intro.php
>
>
Actually, unless it is for your own personal use[ie not scanning a client
site], nessus costs about 1200/year.

If you really want open source, OpenVAS is currently active[currently
working on v4 beta].  It was, initially, a fork of Nessus 2.0 back in 2005
when Nessus 3.0 was released under its new closed source model.  As of 2008
Nessus no longer provides an 7 day delayed  feed of security tests and will
not include any GPL tests anymore.

So OpenVAS is probably your best bet.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.nyphp.org/pipermail/joomla/attachments/20101213/465bc31b/attachment.html>


More information about the Joomla mailing list