EDITORS' PICK:
GFI LANguard
Listing updated: January 2, 2013
GFI LANguard is a complete network vulnerability management solution that allows you to scan, detect, assess and remediate security vulnerabilities and provides patch management functionality. This solution scans the entire network, performs over 15,000 vulnerability assessments and identifies possible security threats. The complete and thorough vulnerability assessment database includes standards such as OVAL (2,000+ checks) and SANS Top 20.
GFI LANguard also allows auto-downloads of missing patches as well as patch roll-back. Custom software can also be deployed resulting in a consistently configured environment that is secure against vulnerabilities. This is achieved through a single console with extensive reporting functionality, effectively addressing the three pillars of vulnerability management: security scanning, patch management and network auditing. This cost-effective solution is ideal for businesses to safeguard their systems and networks from hacker attacks and security breaches. GFI LANguard is now also available as a freeware version (with full functionality). Visit our site to learn more & download!
Acunetix Web Vulnerability Scanner tests the security of your website by crawling through it and launching popular attacks such as cross site scripting, SQL injection and more. Identify vulnerabilities in shopping carts, forms, secured areas and other web applications before hackers do! 75% of internet attacks are on web based applications!
AATools for Windows is a set of utilities for analyzing network properties. AATools is a 12-in-1 utility, including Port Scanner, CGI Analyzer, Proxy Analyzer, Email Verifier, Links Analyzer, Network Status, Process Info, Whois, System Info, Resource Viewer and Registry Cleaner.
AWSPS features a set of tools for assessment of Network Security including a TCP Connect scanning engine, with adjustable maximum number of simultaneously opened ports and no-connection time-out adjustment. A TCP Syn scanning engine for Windows 2000 platforms with TCP/IP and ICMP packet capture and more. A UDP Port scanner with test probing of ports to confirm whether the host is up. A NetBIOS scanner. Mapping of Ports to applications feature (Ports Finder). Local Connections and Listening Ports instant report. Local TCP, UDP and ICMP statistics instant report. Local Active Routes, DNS Servers and Persistent Routes. Local IP Statistics/Settings reports. Local Transport Protocols/Winsock Service Providers list and details.
The Enterprise Security Reporter platform features agent-less, fast, comprehensive discovery and reporting solutions for file security, group memberships, Active Directory, printers, file shares and other security settings on Windows and SharePoint servers. Enterprise Security Reporter is essential for administrators burdened with compliance reporting and security audits, automating reporting and simplifying analysis.
Enterprise Security Reporter provides a reporting and auditing solution for corporate data stored on a file share, or in a SharePoint site. Easily discover necessary security information, run reports, create custom reports and conduct ad-hoc queries across the entire organization.
Infiltrator is a network security scanner that can quickly audit your network computers for possible vulnerabilities, exploits, and information enumerations. It comes with a built-in database of known vulnerabilities, that can be updated online and allows you to select the items to scan for or to add custom entries to be included. Infiltrator can reveal and catalog a variety of information, including installed software, shares, users, drives, hotfixes, NetBios and SNMP information, open ports and much more. It can also audit password and security policies, perform HTTP/CGI server auditing, registry auditing In addition, Infiltrator also comes with 18 network utilities for footprinting, scanning, enumerating and gaining access to machines (ping sweep, whois lookups, email tracing, share scanning and more). The program can be run from the commandline, allowing for external scheduling and automated scanning.
Security Manager Plus is a network security scanner that reports on network vulnerabilities and helps to remediate them and ensure compliance. With vulnerability scanning, open ports detection, patch management, Windows file/folder/registry change management and vulnerability reporting capabilities, Security Manager Plus protects the network from security threats and malicious attacks.
MaxPatrol is a network security scanner optimized for effective use by companies of any size (serving from a few to tens of thousands of nodes). It supports vulnerability testing for servers with non-standard configurations, intelligent recognition of vulnerabilities in known (and custom) web-server scripts, identification of RPC services and more. The program uses inspection methods to minimize false detections. MaxPatrol has at its disposal a protection analyzer developed for web servers and web applications (e.g. internet shops). Although MaxPatrol operates within Microsoft Windows, it can test for possible vulnerabilities in any software or hardware platform: from Windows workstations to Cisco networks (*nix, Solaris, Novell, AS400, etc.). Additional features include scheduled scans, custom level vulnerabilities, full scan history and more.
MegaPing provides a package of utilities for Information System specialists, system administrators, IT solution providers or individuals. It includes: Scanners: Comprehensive Security Scanner, Port scanner (TCP and UDP ports), IP scanner, NetBIOS scanner, Share Scanner. All Scanners can scan individual computers, any range of IP addresses, domains, and selected type of computers inside domains. Security scanner provides the following information: NetBIOS names, Configuration info, Missing Security Patchs, Installed Service Packs, open TCP and UDP ports, Transports, Shares, Users, Groups, SNMP, Services, Drivers, Local Drives, Sessions, Remote Time of Date, Printers. Monitors: Host and Port Monitor. System Information: System Info Viewer, Advanced Process Viewer, Network Resources Viewer. Network utilities: DNS list host, DNS lookup name, Network Time Synchronizer, Ping, Traceroute, Whois, and Finger. It can generate reports in HTML or TXT format, and copy data to the Clipboard. In addition, Process and Port monitor allows to log errors and informational messages to HTTP log file with different format options. Monitor notification options include email with SMTP server auto discovery, sound notification.
Metasploit Express enables IT professionals to easily verify whether vulnerabilities are exploitable, prioritize their mitigation and conduct basic penetration testing. It adds a graphical user interface to the Metasploit Framework, the de-facto leader in pentesting tools, and automates many of the tasks that otherwise require custom scripting, such as smart brute forcing, evidence collection, and reporting.