RE: Know such a web's server tool? -- huh

From: intel96 (intel96at_private)
Date: Mon Jul 21 2003 - 14:28:26 PDT

  • Next message: Paulo Abrantes: "Re: Looking for Telnet like war dialer"

    >Exactly this is the reason why penetration testing isn't only running of
    >nmap/nessus/iss/whatever, but more important - interpretation of results
    and
    >additional steps taken.
    
    >Everyone can run tools, but only people who understand things can interpret
    > their results and find additional possible or existing security problems.
    
    
    The problem is finding people that really can interpret the results from
    many of the tools used.  I have seen people run tools like ISS and drop a
    report 1000+ pages on a desk. When asked what the report means I always get
    the "deer in the head lights look."  In addition several of the tools (ISS,
    Retina, etc.) still have false positives that must be uncovered through
    interpretation of the results and some old fashion manual testing.  There is
    still no tool that can replace the best tool of all, which is the human
    brain.............
    
    Regards,
    
    intel96
    
    
    
    -----Original Message-----
    From: Bojan Zdrnja [mailto:Bojan.Zdrnjaat_private]
    Sent: Monday, July 21, 2003 6:13 PM
    To: 'Alvin Oga'; 'Paul Vet'
    Cc: 'MARTIN M. Bénoni'; pen-testat_private
    Subject: RE: Know such a web's server tool? -- huh
    
    
    
    
    > -----Original Message-----
    > From: Alvin Oga [mailto:alvin.secat_private-Consulting.com]
    > Sent: Sunday, 20 July 2003 5:59 p.m.
    > To: Paul Vet
    > Cc: MARTIN M. Bénoni; pen-testat_private
    > Subject: RE: Know such a web's server tool? -- huh
    >
    > okay.... i'll bite ...  why does everybody/somebody think that "pen-test"
    > means to run a port scan w/ nmap/nessus .. etc ..
    
    Exactly this is the reason why penetration testing isn't only running of
    nmap/nessus/iss/whatever, but more important - interpretation of results and
    additional steps taken.
    
    Everyone can run tools, but only people who understand things can interpret
    their results and find additional possible or existing security problems.
    
    Regards,
    
    Bojan Zdrnja
    
    
    ---------------------------------------------------------------------------
    ----------------------------------------------------------------------------
    
    
    
    
    ---------------------------------------------------------------------------
    ----------------------------------------------------------------------------
    



    This archive was generated by hypermail 2b30 : Tue Jul 22 2003 - 15:36:58 PDT