The MSS integrates functionality to probe specific hosts for known vulnerability. This can help during the analysis of certain incidents to assess the likelihood that a machine was exploited. More importantly this feature can also help in assessing the vulnerability of certain hosts. The MSS allows to gather forensic data documenting the vulnerabilities and generate detailed reports to be escalated for remediation. The remediation includes distributing escalation reports in a group ticketing work-flow process and/or enforcing quarantine  for specif hosts.

When you initiate a scan on a particular IP address, the system will add the result of the scan

  • as events in the real time window as shown in the first figure below (click on the figure to zoom in)
  • as event in the historical reports
  • as a detailed report detailing the particular vulnerabilities as shown int the second figure below (click on the figure to zoom in)
Selection 051 small Vulnerability Scanning

Example of vulnerability results in Real Time interface

 

Selection 052 small Vulnerability Scanning

Detailed Vulnerability Report