Dieter Sarrazyn · @dietersar
91 followers · 78 posts · Server fosstodon.org

Updated CheckNessusAuthScan (github.com/dietersar/CheckNess) to prepare for Authenticated scans with @TenableSecurity
for standalone systems

#nessus

Last updated 1 year ago

Dieter Sarrazyn · @dietersar
89 followers · 74 posts · Server fosstodon.org

Created a small script to check the requirements to allow @TenableSecurity authenticated scans on standalone hosts - find it on github.com/dietersar/CheckNess - Still work in progress, all feedback welcome

#powershell #nessus #systemanalysis #hardening #fat #sat

Last updated 1 year ago

Ed van der Elsken · @EdvdElsken
141 followers · 311 posts · Server mastodon.ozioso.online
rye · @rmaloley
128 followers · 663 posts · Server infosec.exchange

It took way too long to get this Nessus export script working. However it'll more than make up for it in the future with time savings.

#python #tenable #nessus #scripting

Last updated 1 year ago

Harry Sintonen · @harrysintonen
155 followers · 131 posts · Server infosec.exchange

Plugin ID 171859 triggers on current up to date Windows installs, and requires to be updated to version 7.88.0 or later. Microsoft is only offering 7.83.1. The issue here is that this appears to be triggering to orgs implementing policy (this likely includes many defense and other critical sectors orgs). So currently it seems that many systems are flagged non-compliant without clear recourse.

tenable.com/plugins/nessus/171 en.wikipedia.org/wiki/Informat

#tenable #nessus #curl #iava

Last updated 1 year ago

acrypthash👨🏻‍💻 · @acrypthash
285 followers · 223 posts · Server infosec.exchange

There's nothing like building the wrong servers for the SOC 🤌.

I'm going to spend some time rebuilding some Linux servers for a new scanning tool our SOC uses. We've decided to move away from Nessus (not my decision, but I'm open-minded). I still utilize OpenVAS for all of my narrowed subnets and specific endpoint stuff though. I'll post more about the tool as I familiarize myself with it.

#security #soc #vulnerabilityscanner #nessus #openvas #vulnerabilitymanagement

Last updated 2 years ago

Alonso Caballero · @Alonso_ReYDeS
29 followers · 113 posts · Server infosec.exchange

Webinar Gratuito: " ". Jueves 5 de Enero del 2023. De 5:00pm a 5:45pm (UTC -05:00). Registro Libre en: reydes.com/d/?q=eventos

#nessus #essentials #cybersecurity #hacking #readteam #bugbounty #forensics #osint

Last updated 2 years ago

Alonso Caballero · @Alonso_ReYDeS
29 followers · 112 posts · Server infosec.exchange
Alonso Caballero · @Alonso_ReYDeS
28 followers · 106 posts · Server infosec.exchange
Alonso Caballero · @Alonso_ReYDeS
27 followers · 104 posts · Server infosec.exchange

: " Essentials". Jueves 5 de Enero del 2023. De 5:00pm a 5:45pm (UTC -05:00). Registro Libre en: reydes.com/d/?q=eventos

#webinar #GRATUITO #nessus #cybersecurity #hacking #readteam #bugbounty #forensics #osint

Last updated 2 years ago

Alonso Caballero · @Alonso_ReYDeS
27 followers · 89 posts · Server infosec.exchange

: " ". Jueves 5 de Enero del 2023. De 5:00pm a 5:45pm (UTC -05:00). Registro Libre en: reydes.com/d/?q=eventos

#webinar #GRATUITO #nessus #essentials

Last updated 2 years ago

Alonso Caballero · @Alonso_ReYDeS
26 followers · 86 posts · Server infosec.exchange

: " Essentials". Jueves 5 de Enero del 2023. De 5:00pm a 5:45pm (UTC -05:00). Registro Libre en: reydes.com/d/?q=eventos

#webinar #GRATUITO #nessus

Last updated 2 years ago

⚔ ΛШΛЯG ⚔ · @Awarg
1 followers · 19 posts · Server mas.to

New server installed - No *phew
thank you essentials for your service

tenable.com/products/nessus/ne

#Tenable #free #nessus #vulnerabilities

Last updated 2 years ago

rye · @rmaloley
77 followers · 141 posts · Server infosec.exchange

Awesome! I think I got past the stumbling block for automating the Nessus config when building our standard image via packer. Now to script it and test it...

#nessus #packer #automation

Last updated 2 years ago

Matthias Ott · @matthiasott
1591 followers · 727 posts · Server mastodon.social

A client of mine hired Ernest & Young 🤑 to run a vulnerability scan (with tenable ) against a site I built and it seems to not like the Let’s Encrypt X.509 certificate. Now, I was asked to fix it within two weeks. Does anyone know if there’s another option than buying a certificate from a “trusted” authority?

#nessus #ssl #certificates #infosec

Last updated 2 years ago

rye · @rmaloley
75 followers · 127 posts · Server infosec.exchange

Argh Tenable why is your licensing and plugin service so finicky.
---
[debug] Error fetching feed information: [502] <html>
<head><title>502 Bad Gateway</title></head>
<body>
<center><h1>502 Bad Gateway</h1></center>
<hr><center>nginx</center>
</body>
</html>
[error] Nessus Plugins: Did not get a 200 OK response from the server: HTTP/1.1 502 Bad Gateway
---

It's hard to do my job when I can't activate my core tools.

#tenable #nessus #linux #pentesting

Last updated 2 years ago

To me, it's surprising that continued to underinvest into their SaaS portfolio, including . About 10 years ago, people used to add "Nessus" to their as , but today it's a cheap half-dead product with no real support.

In the InfoSec industry, regress-testing security scanners is uncommon: to set up knowingly vulnerable systems and to check what each scanner does not find (False Negatives). There is an over-emphasis on False Positives, but these are easier to handle. The real cost of Nessus today is handling its False Negatives.

#tenable #nessus #cv #experience

Last updated 2 years ago

ChickenPwny · @ChickenPwny
353 followers · 1397 posts · Server infosec.exchange

140 days later i have new features and updates for EGO alternative of the future.

youtube.com/watch?v=5pr6shflXk

#python #django #nessus #infosec #pentesting #bugbounty

Last updated 2 years ago

Daniel Isaksen · @duniel
63 followers · 106 posts · Server infosec.exchange

deals, mostly , , and .

I started making a birdsite style thread of short posts earlier but realised 11000 characters should be enough for a single post. To be updated further.

has 30% off on certain products, Workstation Pro 17 is $139 instead of $199 - store-us.vmware.com/

has a 35% discount on books with the code HOLIDEALS, ends Nov 28 (Monday) - nostarch.com/

gives 2% discount for every $100 up to 10%, $200 off WiFi Pineapple Enterprise, 15% off bundles - hak5.org/

has discounts on various gear and bundles, code BLACKFRIDAY15 gives 15% off across the site - labs.ksec.co.uk/black-friday-s

gives $10 off annual subscriptions and $50 off limetime subscriptions - phoronix.com/phoronix-premium

has various discounts on tools for - covertinstruments.com/collecti

25% off - lastpass.com/pricing

Press Store has discounts of 40% to 55% with the code BOOKSGIVING - microsoftpressstore.com/promot

25% off seasonal bundles and 20% off toolkits - ifixit.com/promotions/black-fr

25% off Home and 10% off - hex-rays.com/terms-and-conditi

deals for lockpicks and -tools - shop.multipick.com/en/black-fr

50% off with code TakeHalf - store.tenable.com/1479/purl-ta

20% off annual personal subscriptions with code AOC22 - tryhackme.com/why-subscribe

€20 off triannual and €140 off annual premium subscriptions, €25 off monthly, €110 off triannual and €510 off annual subscriptions - grayhatwarfare.com/packages

33% off plus and 40% off unlimited - proton.me/mail/black-friday

15% off with code BF2022 - maltronics.com/discount/BF2022

#multipick #tenable #nessus #tryhackme #grayhatwarfare #protonmail #Maltronics #blackfriday #blackweek #cybermonday #tech #infosec #books #tools #vmware #nostarchpress #hak5 #kseclabs #phoronix #covertinstruments #locksports #lastpass #microsoft #ifixit #hexrays #ida #idapro

Last updated 2 years ago

· @0x5ebastian
27 followers · 54 posts · Server infosec.exchange

still doing my colleagues tasks... has anyone seen such huge logs before?

#sysadmin #nessus

Last updated 2 years ago