How Vulnerable is Your Network?
Threat analysis and Vulnerability assessment is becoming an essential part of network and system administration. It helps in securing the network against the bad guys. The basics are trying to find loop holes and weaknesses in- Operating systems and services (user accounts, passwords, fax, file sharing, memory, etc…)
- Application (browser, email clients etc…)
- Network Configuration and devices (routers, gateways etc…)
Steps in a vulnerability Scan
Vulnerability scanning is achieved through the following steps.- Network Discovery through ICMP-Internet Control Message Protocol. Ping the target system and look for a response. If ECHO_REPLY (type 0) is received the target is alive.
- Individual ports are scanned in continuation or in stealth mode where the ports are checked out over a period of time. Port vulnerability assessments are to find what services of the computer are active and which can be attacked. Operating system, Service packs and Kernel releases are some of the information that the port vulnerability assessments collect. Port scan does not detect vulnerability. Vulnerability must be tested by sending some damaging information to the host that is scanned.
- The networks vulnerability scanners send damaging information and analyze the data and generate the report and detail potential vulnerabilities and patches.
What are scanned?
Vulnerability assessment tools are of different kinds. Some of the scans are intrusive while others are stealth. The entire purpose of the scan is to find flaws and signs of compromise. The aspects that are scanned are- Registry entries for any changes and malicious entries
- Known software bugs in the operating system and applications
- Misconfigurations in any services of the operating systems, applications or services of the target devices.
- Known Backdoors and Trojans
- Insecure accounts
- Services that are not necessary but open and running
What is Risk Management
Risk management is knowledge about the report the vulnerability scanner and employing enterprise risk management software or any other software that can protect the network. It has to be a step ahead in protecting your network from known as well as unknown vulnerabilities. There ought to be a balance between absolute security and absolute access.- A policy framework of security for its employees
- A training and awareness program for its employees
- Firewalls and software’s for intrusion detection and prevention
Related Articles
Can You Find Out who is Intruding Your PC?Effective Tips: Prevent Network Attacks with Firewalls
Top Network Security Products
Hacking and Network Security
Effective Preventive solutions Network security includes the process of securing private and official data under authentic access control preventing system virus and hackers from attacking them.
Vulnerability Assessment
Intrusion Prevention
Firewall and Security
Network Security Solutions
Hacking Port Scanners
Tools and Standards
Network Tools
Network security includes the process of securing private and official data under authentic access control preventing system virus and hackers from attacking them.
![]()
Security Standard by IETF
Network Security Websites
Business Network policy
Network Security
Networking field take account of necessities and strategy that are followed by network administrators to monitor unauthorized access over computer network resources.
Computer Security Breach
Network Security and OS
Linux Network Security
Home Network Security
Wireless Network Security
Security systems over enterprise network cover wide-ranged strategies that help to guard the network beside possible threats on system hacks and cracks.
Spy BOT
Advantages of Honey Pots
Unified Threat Management
Information Security Policy
Denial Of Service
Haven´t found the article you are looking for, please suggest your article. We value all your suggestions and comments.
Suggest
Home
Sitemap
Privacy Policy
Contact Us
Disclaimer
Copyrights
©Copyright 2011 securingmynetwork.com All rights reserved. Read legal policy and privacy policy.
