2.2 Given a scenario, analyze output from vulnerability assessment tools.

Tools

  • Network scanning and mapping
    o Angry IP Scanner
    o Maltego
  • Web application scanners
    o Burp Suite
    o Zed Attack Proxy (ZAP)
    o Arachni
    o Nikto
  • Vulnerability scanners
    o Nessus
    o OpenVAS
  • Debuggers
    o Immunity debugger
    o GNU debugger (GDB)
  • Multipurpose
    o Nmap
    o Metasploit framework (MSF)
    o Recon-ng
  • Cloud infrastructure assessment
    tools
    o Scout Suite
    o Prowler
    o Pacu