pen-test
[Top] [All Lists]

Re: Vulnerability Assessment

To: "Colin Grady" <colin.grady@gmail.com>
Subject: Re: Vulnerability Assessment
From: Danux <danuxx@gmail.com>
Date: Mon, 23 Jul 2007 15:13:01 -0500
Cc: "Uzair Hashmi" <uzair@kse.com.pk>, listbounce@securityfocus.com, pen-test@securityfocus.com, security-basics@securityfocus.com
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
Dkim-signature: a=rsa-sha1; c=relaxed/relaxed; d=gmail.com; s=beta; h=domainkey-signature:received:received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=rgygMO15jDvr0cJGct6BkqGg0GXLrrSbadcm2FEDOhrKGzF5RGyZKK8tfrwjfckuDK9svgQGhdWmzeR8SCHeft2wicU3tqetp4jMLal/EtptfCBo3yVkh0XQyBHROj8s6qEtU98KNGYZq9YKr6Ukq5aGdl8SvgNLX4ekkivygME=
Domainkey-signature: a=rsa-sha1; c=nofws; d=gmail.com; s=beta; h=received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=JNOTGBuZ23Eb6xiAmISNian8SMLzy+RxcY2oHtgDsQQmwlf8QS2j9s5bBpxdtaQzTBtaP6TTuJGYbXmLru6Mw5UoCS1PF9UPZ+uNENJVZK96kNya4xb1LZnbeahYEzaXhJEpW0bZpPKfrKLKSTRpouW3ydDzYSF8JizDkJORfT8=
In-reply-to: <19a1e6d30707231037s2f601c5fp2572f2e899cb61d@mail.gmail.com>
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
References: <928304718-1180733864-cardhu_blackberry.rim.net-193472141-@bxe017-cell01.bisx.prod.on.blackberry> <MHEAIIDDABAHPIJFFKBHAEPMCBAA.uzair@kse.com.pk> <19a1e6d30707231037s2f601c5fp2572f2e899cb61d@mail.gmail.com>
Resent-date: Mon, 23 Jul 2007 17:33:20 -0600 (MDT)
Resent-from: pen-test-return-1078484676@securityfocus.com
Resent-message-id: <20070723233320.16F42237631@outgoing3.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
Well, Qualys Guard, is one of the most used for Leader Corporate Enterprises.

When you see a new vulnerability going out to public   (through
Microsoft, BugTrack, so on,)Qualys Guard Team discover it one week
ago.

And let me tell you something,  Historically, mcAfee is "only-good"
for viruses, but for threats discovery they are not the best solution.

You should check which kind of companies have McAffe FoundStone and
which have Qualys Guard( i work on one of the Financial World Leader
Company who used Qualys in all the WORLD!!!!) i think its a good
reference.

Hope this help.

On 7/23/07, Colin Grady <colin.grady@gmail.com> wrote:
> Uzair,
>
> Have you looked at Critical Watch (http://www.criticalwatch.com/)?
>
> Colin
>
>
> On 6/4/07, Uzair Hashmi <uzair@kse.com.pk> wrote:
> > Hello list,
> >
> > I have been evaluating an automated vulnerability assessment software, have 
> > found two of them better for the organizational needs. I need your help to 
> > select only one out of the two.
> >
> > 1- QualysGuard (http://www.qualys.com)
> > 2- Foundstone Enterprise 
> > (http://www.mcafee.com/us/enterprise/products/vulnerability_management/foundstone_enterprise.html)
> >
> > Please advice.
> >
> > Regards,
> > Uzair
> >
> >
> > ------------------------------------------------------------------------
> > This List Sponsored by: Cenzic
> >
> > Are you using SPI, Watchfire or WhiteHat?
> > Consider getting clear vision with Cenzic
> > See HOW Now with our 20/20 program!
> >
> > http://www.cenzic.com/c/2020
> > ------------------------------------------------------------------------
> >
> >
>


-- 
Danux, CISSP
Chief Information Security Officer
Macula Security Consulting Group
www.macula-group.com

------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>