[ up | Information Engineering | IS and Security ](Deutsch)

Vulture
Integration of vulnerability analyses and network management with Vulture


Description

In light of the rising number of reported hacker attacks not examining systems on the LAN for potential security breaches by means of vulnerability analyses can be considered negligent. A multitude of tools is available to perform these analyses. All these tools have in common that they offer an own (more or less useful) user interface. As tests should not be limited to a single tool, the user can either become acquainted with the different user interfaces or extend a (most likely already existing) network management environment to also support vulnerability analyses. This approach is supposed to be implemented in a form as universal and extensible as possible within the scope of this project. As all network management environments offer SNMP services by some means, the major portion of the project is implemented as an SNMP agent to avoid limitation to a single management station (and therefore losing flexibility). Using this approach usually only requires a relatively small program component to extend the management station. In addition, this also allows to control the vulnerability tools from shell scripts using SNMP. Extensibility is considered one of the key goals for this approach. It should be possible to incorporate new vulnerability tools without the need to modify source code for the agent or the management station.

Detailed Information can be found here .

Downloading prototype:

  • Will be soon available here!
  • Links:

    Used Software:


    DFG Schwerpunktprogramm Sicherheit

    www.gnu.org