Sponsored results
Links
- Securescout perimeter penetration testing

Tests are performed over the Web to Internet-connected systems.
http://www.netvigilance.com
- Saint Corporation

Network vulnerability assessment scanner.
http://www.saintcorporation.com/
- Retina Network Security Scanner

Identifies security vulnerabilities, suggests appropriate corrective actions and fixes. Free MyDoom, Nimda, DCOM, Sapphire SQL Worm, and Nimda scanner downloads.
http://www.eeye.com/
- Securing your unix, as400 and vax systems - for os400 and openvms

Non-intrusive software tool which will review the security of Unix, OS400 and OpenVMS systems.
http://www.cxlsecure.com
- Spectator scanning tool

Scans Windows NT/2000/XP/2003 machines for P2P applications, remote-control applications, service packs, etc.
http://www.promisec.com
- SourceForge.net: Gamja : Web vulnerability scanner

Scans for XSS(Cross site scripting) & SQL Injection.
http://sourceforge.net/projects/gamja
- Shadow Security Scanner

Offers vulnerability auditing modules for many systems and services. These include: NetBIOS, HTTP, CGI and WinCGI, FTP, DNS, DoS vulnerabilities, POP3, SMTP, LDAP, TCP/IP, UDP, Registry, Services, Users and Accounts, password vulnerabilities, publishing extensions, MSSQL, IBM BD2, Oracle, MySQL, PostgressSQL, Interbase, and MiniSQL.
http://www.safety-lab.com/en/products/1.htm
- Proactive Windows Security Explorer

A password security test tool that's designed to identify and close security holes by executing an audit of account passwords, and exposing insecure account passwords.
http://www.elcomsoft.com/pwsex.html
- Portswigger.net

Web application security testing software. Product details, downloads, how to order and screenshots.
http://portswigger.net/
- Oracle Security Scanner

This script looks for certain security issues within an Oracle database. This scanner accompanies a white paper published on security focus at http://www.securityfocus.com/infocus/1522.
http://www.pentest-limited.com/scanner.sql
- Online Vulnerability assessment ASP with graphical network display, updated daily

Online vulnerability scanner which scans for SANS "top ten" vulnerabilities.
http://www.qualys.com
- Online Security Check

Free firewall, privacy and browser security test.
http://www.testmyfirewall.com
- PatchQuest and ScanFi

Automated patch management and vulnerability assessment software for scanning, distributing and managing patches, security hotfixes and updates across heterogeneous networks comprising Windows, Red Hat and Debian Linux systems.
http://www.securecentral.com
- PCMantra - Registry Cleaner, Anti Spyware

Offers privacy software for disk management and registry cleaning, anti-spyware and spam filter. Downloads and online sales available.
http://www.pcmantra.com
- PortSense

Free online port scan of your firewall. Online network support tools: Ping, Whois, What’s My IP, Relaytester and more.
http://www.portsense.com
- PivX Solutions Inc

Offer vulnerability and malware scanning software products for home and enterprise users.
http://www.pivx.com/
- sqlmap: a blind SQL injection tool

SQL scanner capable of enumerating entire remote databases, perform an active database fingerprinting, and more.
http://sqlmap.sourceforge.net/
- xSharez Scanner

A multithreaded NetBIOS/SMB scanner providing information such as operating system, NetBIOS name, Workgroup, User name, Mac address. Generate advanced HTML and CSV reports. Check the vulnerability of Windows 95/98/ME using integrated password detection tool.
http://www.tools-for.net/products.php?p=xsharez
- wmap

A web scanner which checks for files and CGIs in non-standard directories.
http://netninja.com/files/wmap/
- Wikto Web Assessment Tool

Web server fingerprinting, directory and link extraction, Nikto and Google Hack DB scans.
http://www.sensepost.com/research/wikto/
- Product Review: Acunetix Web Vulnerability Scanner

A review of the Acunetix web vulnerability scanner. (August 11, 2005)
http://www.windowsecurity.com/articles/Product-Review-Acunetix-WVS.html
- Vulnerability Scanner Review

Network Computing's review of several commercial and open-source Vulnerability Assessment Scanners. (January 8, 2001)
http://www.nwc.com/1201/1201f1b1.html
- Network Security: Know Your Weaknesses

Review of six vulnerability scanners. (December 30, 2003)
http://www.pcmag.com/article2/0,4149,1400225,00.asp
- Vulnerability Scanners

Review of several vulnerability scanners. (October 1, 2004)
http://www.windowsitpro.com/Windows/Article/ArticleID/43888/Windows_43888.html
- Web Security - Jamesmaurer.com

Offers online security testing and provides a list of privacy tools to help make internet travels safer.
http://www.jamesmaurer.com
- Watchfire - AppScan

A web application vulnerability assessment product.
http://www.watchfire.com/products/appscan/default.aspx
- Sussen

A security scanner which remotely tests computers or other devices and provides a report on their vulnerabilities.
http://dev.mmgsecurity.com/projects/sussen/
- SuperScan, SQLScan, BOping

Several security scanners, including a portscanner, a scanner for the Back Orifice, a scanner for Microsoft SQL Server "Slammer" Worm.
http://www.foundstone.com/knowledge/scanning.html
- STAT Scanner

A vulnerability assessment tool for Windows NT and Windows 2000 Enables systems administrators to find and repair security vulnerabilities.
http://www.statonline.com/solutions/vuln_assess/index.asp
- TrustSight Security Scanner

Cross-Site Scripting, SQL Attacks,OS Attacks, Directory Traversal, cookie manipulation are tested. Claims not only to be able to find not only known vulnerabilities, but also potential new ones. CVE Compatible.
http://www.syhunt.com/b_scanner.php
- Visionael Security Audit

Software providing device discovery, scanning, prioritization, and report generation of vulnerabilities.
http://www.visionael.com
- Wapiti - Web application security auditor

Wapiti acts like a fuzzer, injecting payloads to see if a script is vulnerable.
http://wapiti.sourceforge.net/
- Vulnerability Scanning Cluster Project

A web-based interface for the Nessus vulnerability scanner and a backend queue manager for scan requests. Allows users to hierarchically manage networks of hosts, scanning policies, and automated scans.
https://sourceforge.net/projects/vscweb/
- N-Stealth Security Scanner

Vulnerability-assessment product that scans web servers to identify security problems and weaknesses on local and remote web servers. Commercial and free editions are available.
http://www.nstalker.com/
- NScan

It includes network/host scanner, a set of additional features currently limited to whois and traceroute and numerous options to fully customize the scan process.
http://www.nscan.org/
- Domino HTTP security scanner

Security scan for Domino web servers.
http://domilockbeta.2y.net/
- Cum Security Toolkit (cst)

Contains a cgi script scanner with 11 anti-IDS tactics and +2200 vulnerable scripts in the database; and a port scanner with banner grabber.
http://www.blackhat.be/cst/
- CHScanner

IPv4 and IPv6 enabled scanner.
http://www.geocities.com/calinradoni/CHScanner.html
- DominoDig

Audits Lotus Domino web servers. Produces an HTML report that provides a list of all the unique .nsf databases it was able to access, as well as IP addresses and email addresses.
http://dominodig.sourceforge.net/
- FileMaker Pro XML Scanner

Free online tool to check the security of FileMaker Pro databases that are published on the web.
http://www.digitalpoint.com/tools/fmdigger/
- FusionVM Enterprise

FusionVM from Critical Watch automates the process of proactively managing network vulnerabilities and exposures. It enables a unified corporate process that is enterprise-wide, repeatable and measureable.
http://www.criticalwatch.com
- Firewalk

Open source tool that tries to determine which protocols will pass through an IP firewall.
http://www.packetfactory.net/firewalk/
- Filterrules

Description and download of the GPL-licensed firewall testing and documentation tool.
http://www.hsc.fr/ressources/outils/filterrules/index.html.en
- Avanton ReadyARM - Network Security Management Appliances

Appliance which provides the ability to monitor computer networks for unauthorized intruders and scan for vulnerabilities.
http://www.avanton.ca/
- AutoScan

AutoScan is an application designed to explore and to manage your network. Entire subnets can be scanned simultaneously without human intervention. It features OS detection, automatic network discovery, a port scanner, a Samba share browser, and the ability to save the network state.
http://autoscan.free.fr/
- AppDetective

Penetration testing scanner that locates and assesses the strength of databases and web applications within your network.
http://www.appsecinc.com/products/
- Angry IP Scanner

A freeware IP scanner for Windows. Display NetBIOS information, MAC address; save result to CSV, TXT, HTML or XML file.
http://www.angryziber.com/ipscan/
- Adslscan

Web security scanner, runs Nessus Scanner in ASP mode, no installation required.
http://www.adslscan.com
- Arirang

A webserver security scanner based on twwwscan.
http://monkey.org/~pilot/
- Atelier Web Security Port Scanner

TCP, UDP, NetBios scanner.
http://www.atelierweb.com/pscan/index.htm
- Auto IP Scanner

Scan your PC for open ports ( Http, Https, Ftp, Dns, MySql, Imap, Smtp, Pop, Dc++, Irc).
http://scan.no-ip.ro
- Attack Tool Kit Project

An open-source utility to realize vulnerability checks and enhance security audits.
http://www.computec.ch/projekte/atk/
- Gherkin

Free security scan manager incorporating Nessus vulnerability scanning, dns and nmb lookup, host resolving, and nmap fingerprinting and scanning.
http://sourceforge.net/projects/gherkin/
- nCircle IP360 Vulnerability Management

An appliance-based solution that proactively discovers and assesses network vulnerabilities and exposures to protect networks and IP-enabled devices.
http://www.ncircle.com
- MegaPing scanner

TCP and UDP portscanner and NetBIOS scanner, Displays installed service packs, open TCP and UDP ports, missing security patches.
http://www.magnetosoft.com/
- Network Analyzing

Network scanning and auditing software which scans your network or webserver for over 20,000 exploits.
http://www.networkanalyzing.com
- NetworkActiv: Port Scanner

Network administration toolset offering port and IP scanning, whois and DNS queries and OS fingerprinting. Freeware for Windows.
http://www.networkactiv.com/Scanner.html
- Nikto

A web server scanner which performs comprehensive tests against web servers for multiple items, including over 2200 potentially dangerous files/CGIs, versions on over 140 servers, and problems on over 210 servers.
http://www.cirt.net/code/nikto.shtml
- NGSSoftware

Security scanners and assessment tools for Oracle, Domino, and SQL Server. Checks for weak passwords and vulnerability to SQL injection and cross-site scripting.
http://www.nextgenss.com/
- NeXpose

A security scanner that runs on Win2k/XP and Linux. It has an extensible rule engine and ships with over 1000 vulnerability tests.
http://www.rapid7.com
- MaxPatrol Security Scanner

Network security and web-application scanner with prediction capabilities.
http://maxpatrol.com
- load balancer detector

Halberd discovers HTTP load balancers. May be useful for testing load balancer configurations and for web application auditing purposes.
http://halberd.superadditive.com
- Immunity Canvas

Tests for over 50 exploits. Licenses include full source code.
http://www.immunitysec.com/products-canvas.shtml
- IIS Vulnerability Scanner ver 1.0

Contains 1700+ server and file checks including hundreds of unicode and directory traversal vulnerability checks for IIS.
http://www.freewebs.com/okidan/
- HFNetChkPro

Patch management tool scans Microsoft servers and desktops. Schedule and immediate remote patch scans and installations. Freeware and command-line versions available.
http://www.shavlik.com/
- Infiltration Systems

Network security scanning software for detecting, auditing, and fixing network security exploits and vulnerabilities.
http://www.infiltration-systems.com
- IP Range Scanner

This tool enables the user to retrieve a list of computer host names, logon account names, and MS IIS service status, and/or determine the use of non-LocalSystem accounts (used to start services).
http://www.kcmo.net/
- ISS

Internet Scanner Tool. Performs scheduled and selective probes of communication services, operating systems, applications and routers to uncover and report systems vulnerabilities that might be open to attack.
http://www.iss.net/products_services/enterprise_protection/vulnerability_assessment/scanner_system.php
- IPaudit vulnerability scans

Check open ports on vulnerabilities.
http://www.ipaudit.net
- Acunetix Web Vulnerability Scanner

Scans for common security vulnerabilities such as SQL injection, cross site scripting and other web vulnerabilities.
http://www.acunetix.com/
The Computer Science Directory currently has categories, which include links along with indexed pages.