Vulnerability Assessment
Home > Security Topics > Platform Security > Vulnerability Management > Vulnerability Assessment
Security Topics:
EMAIL THIS
 TOPICS HOME   BROWSE ALL SECURITY TOPICS   SECURITY INFO CENTERS   RESOURCE CENTERS     RSS FEEDS 

Vulnerability Assessment


This area offers the latest news, advice and learning tools on vulnerability assessments, scanning and reporting.
IN THIS TOPIC:  NEWS (45) , EXPERT TECHNICAL ADVICE (40) , REFERENCE & LEARNING (9) , MAGAZINE CONTENT (8) , WHITE PAPERS , DEFINITIONS (3)

MUST READ
Review: New Hailstorm a viable in-house pen test option
ARTICLE - Cenzic's latest version weaves nicely with QA and development teams to test commercial and custom applications for vulnerabilities.
Exploit code lurks following new Windows patches
ARTICLE - Windows IT managers work to apply critical fixes before exploit code that may have Zotob-like effects can harm vulnerable systems.
Simplifying Nessus security scans with a spreadsheet model
TIP - In this tip, expert George Wrenn explains how to divide networks into small, manageable IP spaces and maintaining data with a spreadsheet model.

  NEWS: 1 - 3 of 45
Misconfigured networks create huge security risks
SearchSecurity.com | 05 Mar 2008
ARTICLE - Security experts say IT pros should be more concerned about the risks created by misconfigured networks than all the flaws and exploit code they read about.
RE:trace framework aids in OS X, Unix flaw discovery
SearchSecurity.com | 21 Feb 2008
ARTICLE - The new Ruby-based framework gives security professionals and reverse engineers the ability to find flaws in both the stack and the heap
Automated app scanners simplify security
SearchSecurity.com | 13 Sep 2007
ARTICLE - Application scanning tool vendors are growing in popularity driven by the growing need to discover exploitable holes in static and dynamic Web code.
VIEW ALL NEWS ON VULNERABILITY ASSESSMENT

  EXPERT TECHNICAL ADVICE: 1 - 3 of 40
VULNERABILITY ASSESSMENT EXPERTS
Michael Cobb
Founder and Managing Director, Cobweb Applications Ltd.
ASK A QUESTION
Tracing malware's steps with RE:Trace
30 Apr 2008
TIP - In this tip, contributor Noah Schiffman gives an overview of the new RE:trace framework, and discusses how the tool can be used to discover and exploit application vulnerabilities.
Screencast: Penetration testing with Metasploit
29 Apr 2008
TIP - Peter Giannoulis of http://theacademy.ca demonstrates how Metasploit can be used to test commercial and custom-made applications, servers and operating systems.
Worst practices: Learning from bad security tips
15 Apr 2008
TIP - Ed Skoudis exposes bad security practices, highlights the common misconceptions held by security personnel, and offers insight on how corporations can learn from others' mistakes.
VIEW ALL EXPERT TECHNICAL ADVICE ON VULNERABILITY ASSESSMENT

  REFERENCE & LEARNING: 1 - 3 of 9
Information security book excerpts and reviews
SearchSecurity.com | 20 Sep 2006
INFORMATION SECURITY BOOKSHELF - Visit the Information Security Bookshelf for book reviews and free chapter downloads.
Fuzzing: Brute Force Vulnerability Discovery
SearchSecurity.com and Addison Wesley | 14 Aug 2007
BOOK CHAPTER - In this Chapter 21 excerpt from "Fuzzing: Brute Force Vulnerability Discovery," authors Michael Sutton, Adam Greene, and Pedram Amini examine fuzzing frameworks, including SPIKE.
Automating Network Compliance and Security
Realtimepublishers | 09 May 2006
BOOK CHAPTER - This chapter excerpt discusses how networks become non-compliant, and examines how automation can positively impact security and compliance.
VIEW ALL REFERENCE & LEARNING ON VULNERABILITY ASSESSMENT

  MAGAZINE CONTENT (free subscription required): 1 - 3 of 8
Vulnerability Management
Information Security Magazine | 01 Apr 2007
FEATURES - 2007 Readers' Choice Awards Vulnerability assessment, management
At Your Service
Information Security Magazine | 01 Feb 2007
HOT PICK & PRODUCT REVIEWS -
Risk Management
Information Security Magazine | 01 Dec 2006
HOT PICK & PRODUCT REVIEWS - Skybox Security's Skybox View 3.0
VIEW ALL MAGAZINE CONTENT ON VULNERABILITY ASSESSMENT

  WHITE PAPERS
Oracle Global IT (GIT) Streamlined Security
Published by: Qualys, Inc. | 10 May 2008
CASE STUDY - With QualysGuard Enterprise, Oracle GIT Security can monitor the company’s global vulnerability management process, track remediation, and validate policy compliance.
Expert eGuide: Best Practices for Integrated Threat Management
Published by: eEye Digital Security | 01 May 2008
EDITORIAL RESOURCE GUIDE - Check out this expert eGuide and discover how your company can benefit from an integrated threat management solution, which can result in reduced costs and better compliance.
Wireless Security Online, On-demand: Cost-effective, Customizable, Effortless, and Proactive Management of Your Wireless Threat Exposure
Published by: AirTight Networks, Inc. | 15 Apr 2008
WHITE PAPER - This whitepaper introduces a novel way for enabling on-demand wireless security that is affordable, effortless, and customizable.
VIEW ALL WHITE PAPERS IN THIS TOPIC
  DEFINITIONS: 1 - 3 of 3
risk analysis
18 Apr 2006
WORD - Risk analysis is the process of defining and analyzing the dangers to individuals, businesses and government agencies posed by potential natural and human-caused adverse events. In IT, a risk analysis report can be used to ...
vulnerability analysis
28 Mar 2006
WORD - Vulnerability analysis, also known as vulnerability assessment, is a process that defines, identifies, and classifies the security holes (vulnerabilities) in a computer, network, or communications infrastructure. In addition, ...
gray hat
01 Jun 2001
WORD - Gray hat describes a cracker (or, if you prefer, hacker) who exploits a security weakness in a computer system or product in order to bring the weakness to the attention of the owners. Unlike a black hat, a gray hat acts ...
VIEW ALL DEFINITIONS ON VULNERABILITY ASSESSMENT

SEE ALSO - Topics Related to Vulnerability Assessment: 
Patch Management, Configuration Management, Penetration Testing and Ethical Hacking


TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineWebcastsWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




All Rights Reserved, Copyright 2003 - 2008, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts