Smart security: network scanners
Published: 06 Nov 2002 10:00 GMT
That's what the latest generation of network vulnerability scanners do -- they probe your network in order to learn its weaknesses. Some scanner makers, though, shy away from calling the process AI, at least partly for marketing reasons. As explained by Dave Cole, director of products at scanner vendor Foundstone in Mission Viejo, CA: "Maybe it's AI at some basic level, but that is not what the customers are focusing on -- they are having enough trouble with standard vulnerabilities."
But whatever the process is called, network vulnerability scanners combine databases of known security problems with complex logic to find security weaknesses before a human hacker does. The software generates a list of problems that it finds, and often includes notes on how to correct them, explained Mike Rasmussen, an analyst at Giga Information Group. Network scanners do not, however, look for vulnerabilities in the configuration of a given host, or in application code -- host scanners and code scanners do that.
Scanners also don't guarantee security, since minor holes may still be exploited by an expert, while major holes may only lead to an impenetrable firewall. "It's not a question of whether you are safe, but of how protected you are," said Oliver Day, sales engineer at eEye Digital Security in Aliso Viejo, CA, which has a scanning product called Retina. "You will never know that until you gauge it, and you can't do it just once and leave it at that."
Meanwhile, scanning just the perimeter (the ports facing the outside world) is not enough -- you also have to look at the interior of the network, since attacks originate there, too. Day recalled a client who discovered that someone had installed a wireless access point in an empty cubical with an open network port. This allowed the person to sit in the parking lot and divert network traffic, Day explained.
"Gentleness" is a quality more often emphasised by scanner vendors, meaning their software shouldn't crash running systems. First-generation software would query ports with non-compliant requests to see what operating system responded, but that method could crash networked printers and industrial equipment that possessed limited error responses, Cole explained.
Rasmussen said the leading network vulnerability scanning software packages are Internet Scanner from Internet Security Systems (ISS); newcomer Cyc Corp.'s CycSecure; eEye's Retina; Foundstone's FoundScan; NetRecon 5 from Symantec; and a French freeware product called Nessus.
Full Talkback thread
59 comments
-
my computer has been invaded by smart security on... gillian mary holland -
I HAVE THIS SAME PROBLEM!!! How do you remov... Kelli -
I cannot find the 'Cali student' instructions... Mike -
Thank you for your information. Can you tell me ho... Anonymous -
ok, this is how you remove it. right click at the... Anonymous -
I too, have just been hijacked by these moron... Anonymous -
Thank you for the help in removing this... Anonymous -
Thank you! Thank you! Thank you! S... Anonymous -
Man! Thank you!! I was really gettin... Anonymous -
can i just say a HUGE thanks to the student f... Svend -
Thanks for the advice over here,
I looke... Sander -
i followed everyones advise on here... jen -
Ok... I have a friend who has this probl... brewer -
I just spent 3 days trying to rid this f***er... Anonymous -
wow! thank you student in cali, you are aweso... hiroyuki -
Smart-Security
Oh these people really suck!
L... Anonymous -
whoever did this smart security thing should... Anonymous -
I have no security tab on my desktop/web wind... makie -
i really wish i read this before i tried to g... Anonymous -
My right click button doesnt work, how can i... April -
Removing it from the desktop is addresses just one... Jessica -
Jessica, I tried to do what you said to get r... Mike B. -
Thanx to student from cali !! These cret... bazza -
How can I get the information on de... kill smart security -
Hi all!
I followed the instructions and manag... Anonymous -
The Grammar! The Horror!
without this program... blair -
Can anyone help me to remove this stupid secu... Anonymous -
Can anyone help me to remove this stupid... Anonymous -
thanx for your help.it took 3 times to get ri... den -
go to smart secxurity sight ,use there remova... den -
i saved there free clean removal tool f... den -
Hi all. I followed the instructions on how t... Anonymous -
Like Gillian Mary Holland in the UK my PC was inva... Jude Mndeme -
I has been invaded by smart-security wallpaper, an... Albert -
Many thanks to the student from Cali for help... Anonymous -
ty so much........ that smart thingy has been the... jonathan -
If you right click and select view source on the "... Ziegg -
anyone can email me if you need the fix for this p... joe vanwormer -
If the Cali-tip doesn't work,try this...
I couldn'... Anonymous -
I too have been attacked by smart-security, I... Jewett -
hi! how can i remove smart security ad on my deskt... Anonymous -
this is the only way i know of how to remove... rami kanso -
go to link and take the freeclean.exe
That's... Carlos Theodoro -
This smart security thing is turning me... Anonymous -
many thanx to the guy from california !
i was... Michael -
Hey... I am a 17 year old from Mexico, and I am a... 23c0n -
Easy to fix. For clarication to anybody who gets... Know Names -
hi all,
go to their sight and run their remov... den -
i got rid of the SMART SECURITY wallpaper by usin... Slava -
http://www.smart-security.info/removal.html
go to... Carlos Theodoro -
Still there! I deleted the "smart security" screen... Anonymous -
SMART SECURITY YOU GUYS SUCK
Can someone please he... Mark -
My Kudos to the anonymous student in Cal.
I'v... Rix Seacord -
Hi everyone, I must admit whoever did this is very... jovi otite -
I was hijacked by this smartsecurity today an... Anonymous -
Both my brother's and mother's PCs got infected wi... Tom -
how to i get rid off smart security from my destop... neo smith -
my computer has also been taking over by smartsecu... Anonymous -
I have problem with smart security background. The... Anonymous












