KPMG, Gurgaon
Details of the Information Security Audit Tools
Freeware Tools :
- NMAP - Network security
- NetStumbler - Network security
- AirSnort - Network security
- SuperScan - Network security
- Nikto - Web Systems & Applications security
- THC - Web Systems & Application security
- CIS - Local Systems & Applications security
- As400 - Local Systems & Applications security
- CAIN - Password cracking
- Brutus - Password cracking
- JohntheRipper - Password cracking
- SNMPWalk - Router and network management
- SNMP Scanner - Router and network management
- RIP query - Router and network management
- RAT - Router and network management
- DumpSec - Windows security
- Wireshark - Network sniffing
- MBSA - Windows security
- SQL Scan - Database security
Commercial Tools :
- ISS Internet - Network security
- Webinspect - Web Systems & Applications security
- AppScan - Web Systems &Applications security
- Bindview - Local Systems & Applications security
- ISS DB - Database Security
- AppDetective - Database Security
- Nessus - Network security
- Power Tech
- VeloSecure
- IPLocks - Database Security
- Qualsys Guard
- Core Impact
Proprietary Tools :
- *nix Scripts - Security Configuration review of *nix systems
- Database Scripts - Security Configuration review of databases
- SAP Security Explorer - Security and Configuration review of SAP
- CHILLI (V. 1.2.0) - Network Discovery
- OSCR - Oracle Security Review
- KPMG Application Quality Assessment Tool
- AS/400 User Profile Analysis - Security Review