Sunday 7 June 2009 - 322 read - ( Keywords : Nessus , Vulnerability Scanner )
Nessus is the world’s most popular vulnerability scanner used in over 75,000 organizations world-wide. Many of the world’s largest organizations are realizing significant cost savings by using Nessus to audit business-critical enterprise devices and applications.Tenable Network Security has released version 4.0.1 of the Nessus vulnerability scanner. This point release includes a variety of minor bug fixes as well as support for additional authentication schemes. All customers are encouraged to upgrade to the latest version of the Nessus Server and NessusClient. Below is a summary of some of the fixes and improvements:
Generic
Fixed memory & register leaks in NASL
nessus-fetch now supports Basic, Digest, and NTLM proxy authentication schemes
The timeout for NessusClient TCP socket was too low and has been increased
The ’nessus’ cmd line tool would sometimes leave temporary files on the filesystem
Improved performance for reverse DNS lookups
Knowledge Base files would sometimes not be created for targets where the user specified a hostname
Pinging a remote host would sometimes fail if the ARP address of the gateway was not in the local cache
Windows
On some configurations registration would not complete
Manage users’ would not change the users passwords
NessusClient would sometimes close a modified report without asking to save first
The Nessus server now runs on Windows 7. However, Windows 7 is not officially supported at this time. Features such as packet forgery are not yet functioning.
Mac OS X
In some cases Nessus would not work on Mac OS X 10.4
NessusClient would display the IP addresses of the target in reverse order on Mac OS X PPC
Linux
On Linux 64-bit versions, Nessus would generate error messages in dmesg
POSTSCRIPTUM
COMPLIANCE MANDATES
Vulnerability Scanner : PCI DSS 11.2, 6.6, SOX A13.3, GLBA 16CFR Part 314.4(c), HIPAA 164.308(a)(8), FISMA RA-5, SI-2, ISO 27001-27002 12.6, 15.2.2RELATED ARTICLES
Nessus,
Vulnerability Scanner,
22 February 2010 : Nessus v4.2.1 released
3 December 2009 : Nessus v4.2.0 released
24 September 2009 : Nessus 4.2 - Video Preview Of The New Client Interface
16 September 2009 : Nessus v4.0.2 Released
7 June 2009 : Nessus update to v4.0.1
Security Dashboard








