当前位置:网站首页>Penetration test (7) -- vulnerability scanning tool Nessus
Penetration test (7) -- vulnerability scanning tool Nessus
2022-07-06 15:55:00 【Catch the king before the thief】
Nessus Official website :https://www.tenable.com/products/nessus/nessus-professional
download nusses:https://www.tenable.com/downloads/nessus?loginAttempted=true
1、Nessus brief introduction 、 download 、 install
Jane Medium
Nessus It is a very popular vulnerability scanner in the world , Many organizations around the world are using it . The tool provides a complete computer vulnerability scanning service , And update its vulnerability database at any time .Nessus Different from traditional vulnerability scanning software ,Nessus It can be remotely controlled on the local or remote terminal at the same time , Carry out vulnerability analysis scanning of the system
Nessus Pro10.1.2 coordination 20220328 The latest version of plug-ins :https://www.iculture.cc/software/pig=12467
download 、 install
Linux install :
install :dpkg -i Nessus.deb
start-up :systemctl start nessusd.service
Browser access :https://127.0.0.1:8834
Windows install :
download Nessus After decompression, install it directly , Browser access :https://127.0.0.1:8834
download Nessus pro Plug in and update
Linux Carry out orders :sudo /opt/nessus/sbin/nessuscli update all-2.0.tar.gz
Windows Carry out orders :
restart Nessus service
/bin/systemctl start nessusd.service
Conduct The plug-in configuration
Linux:sudo vi /opt/nessus/var/nessus/plugin_feed_info.inc
Windows:
Add content :
PLUGIN_SET = "202203282143";
PLUGIN_FEED = "ProfessionalFeed (Direct)";
PLUGIN_FEED_TRANSPORT = "Tenable Network Security Lightning";
close Nessus service ., Restart again Nessus service .
Then visit again : https://127.0.0.1:8834
kali install nessus
:https://zhuanlan.zhihu.com/p/338454648
Download the corresponding version of nusses:https://www.tenable.com/downloads/nessus?loginAttempted=true
Enter download directory :sodu dpkg -i Nessus-10.1.1-debian6_amd64.deb
Follow the prompts to start the service first /bin/systemctl start nessusd.service
# from deb Installation package installation Nessus
sudo dpkg -i Nessus-8.10.0-debian6_amd64.deb# start-up nessus
sudo /etc/init.d/nessusd start# visit nessu web ui , Set the account and password through the following ways
http://localhost:8834
Managed Scanner ---> Tenable.sc ---> [root:root]# Upgrade plug-in package
sudo /opt/nessus/sbin/nessuscli update all-2.0.tar.gz# Extract files
sudo tar -zxvf all-2.0.tar.gz plugin_feed_info.inc
sudo vim plugin_feed_info.inc
cat plugin_feed_info.inc
PLUGIN_SET = "202004162028";
PLUGIN_FEED = "ProfessionalFeed (Direct)";
PLUGIN_FEED_TRANSPORT = "Tenable Network Security Lightning";# Moving files
sudo cp plugin_feed_info.inc /opt/nessus/var/nessus/
sudo cp plugin_feed_info.inc /opt/nessus/lib/nessus/plugins/# restart nessus
sudo /etc/init.d/nessusd stop
sudo /etc/init.d/nessusd start
边栏推荐
- Research Report on surgical fluid treatment industry - market status analysis and development prospect prediction
- 0-1背包问题(一)
- MATLAB综合练习:信号与系统中的应用
- China's peripheral catheter market trend report, technological innovation and market forecast
- 入门C语言基础问答
- 【练习-4】(Uva 11988)Broken Keyboard(破损的键盘) ==(链表)
- 【练习-5】(Uva 839)Not so Mobile(天平)
- 【练习-10】 Unread Messages(未读消息)
- Es6--- two methods of capturing promise status as failed
- ucore lab7
猜你喜欢
Information security - Epic vulnerability log4j vulnerability mechanism and preventive measures
Learning record: use STM32 external input interrupt
Nodejs+vue网上鲜花店销售信息系统express+mysql
力扣刷题记录
程序员的你,有哪些炫技的代码写法?
渗透测试 ( 4 ) --- Meterpreter 命令详解
STM32 how to use stlink download program: light LED running light (Library version)
Learning record: how to perform PWM output
STM32 learning record: play with keys to control buzzer and led
【练习-5】(Uva 839)Not so Mobile(天平)
随机推荐
渗透测试 ( 7 ) --- 漏洞扫描工具 Nessus
Cost accounting [18]
Perform general operations on iptables
【练习-4】(Uva 11988)Broken Keyboard(破损的键盘) ==(链表)
差分(一维,二维,三维) 蓝桥杯三体攻击
想应聘程序员,您的简历就该这样写【精华总结】
Gartner: five suggestions on best practices for zero trust network access
STM32 learning record: LED light flashes (register version)
China's PCB connector market trend report, technological innovation and market forecast
Research Report on market supply and demand and strategy of China's medical chair industry
Opencv learning log 15 count the number of solder joints and output
STM32学习记录:LED灯闪烁(寄存器版)
Information security - threat detection - Flink broadcast stream broadcaststate dual stream merging application in filtering security logs
Opencv learning log 32 edge extraction
Accounting regulations and professional ethics [1]
Research Report of peripheral venous catheter (pivc) industry - market status analysis and development prospect prediction
Information security - Epic vulnerability log4j vulnerability mechanism and preventive measures
渗透测试 ( 8 ) --- Burp Suite Pro 官方文档
通俗地理解什么是编程语言
Cost accounting [13]