Security Consulting Company, which has employed you as a security tester, has as
ID: 3914599 • Letter: S
Question
Security Consulting Company, which has employed you as a security tester, has asked you to research any new tools that might help you perform your duties. It has been noted that some open-source tools your company is using lack simplicity and clarity or don’t meet the company’s expectations. Your manager, Gloria Petrelli, has asked you to research new or improved products on the market. Based on this information, write a one-page report for Ms. Petrelli describing some port-scanning tools that might be useful to your company. The report should include available commercial tools, such as Retina or Languard, and their costs.
Explanation / Answer
PORT SCANNING COMMERCIAL TOOLS
1) RETINA
This scanner is the most sophisticated assessment solution on the market. It is a standalone application, option with host based, it enables you to efficiently identify IT exposures and prioritize remediation enterprise-wide
Capabilities
At-risk personally identifiable information and other sensitive data.
Analyze threats and gain deeper security intelligence
COST: licensing price of retina is 1,200$
2) LANGUARD
It is the security software with subcategory firewall, it requires less space than most program in security category.
Capabilities
Ensures weakness is not present in that system
Weighted vulnerability assessment and enhanced scanning
COST: it depends on the number of nodes initially (1 NODE) 26$ and for each addiction number of nodes and upgrades 11$ and 13$
3) Nmap
Widely used network discovery and port scanning tool, it is an open source application,
Capabilities
Active Port scanning: allows you to scan and discover open ports on specific networks/hosts.
Host discovery: lets you identify potential hosts that are responding to network requests.
OS detection: discover operating system name and version, along with network details where the host is running.
4) UNICORNSCAN
Even this tool is an popular port scanner, it is an asynchronous TCP and UDP scanning capabilities, along with non-common network discovery patterns that provide alternative ways to explore information about remote operating systems and services.
capabilities
Asynchronous stateless TCP scanning.
Asynchronous UDP scanning.
IP port scanner and service detection.
It can used freely with the help kali linux in which free tools are included