22.12.2012 Views

Secunia Corporate Software Inspector (CSI) 5.0

Secunia Corporate Software Inspector (CSI) 5.0

Secunia Corporate Software Inspector (CSI) 5.0

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Authenticated Vulnerability Scanning Technology<br />

The <strong>Secunia</strong> <strong>CSI</strong> provides non-intrusive authenticated vulnerability and<br />

patch scanning. It takes a different approach compared to other scanners by<br />

conducting authenticated scans of systems. This makes it possible for the <strong>Secunia</strong><br />

<strong>CSI</strong> to identify all installed programs and plug-ins based on the actual files<br />

present on the system.<br />

The <strong>Secunia</strong> <strong>CSI</strong> then correlates program meta data with <strong>Secunia</strong>’s comprehensive<br />

product database to build an inventory of the installed programs and<br />

plug-ins. This inventory is then correlated with vulnerability meta data based<br />

on <strong>Secunia</strong> Vulnerability Intelligence.<br />

The accuracy of this approach is unprecedented and provides actionable<br />

results with risk ratings and other metrics based on <strong>Secunia</strong> Advisories.<br />

Scan results<br />

The scan results of the <strong>Secunia</strong> <strong>CSI</strong> provide details about the full installation path,<br />

version details, direct links to patches, ratings, and access to <strong>Secunia</strong> Advisories<br />

with further vulnerability details and metrics as well as other useful information<br />

for alternative mitigation strategies.<br />

Based on the details collected by the <strong>Secunia</strong> <strong>CSI</strong>, as well as the experts<br />

working behind the scenes at <strong>Secunia</strong>, it is possible to use the <strong>Secunia</strong> <strong>CSI</strong> to<br />

automatically repackage a large amount of patches for direct deployment and<br />

management using Microsoft WSUS and Microsoft SCCM.<br />

The scanning also detects and reports end-of-life programs and plug-ins. This<br />

is software which for some reason is not supported by the vendor. <strong>Software</strong><br />

which has reached end-of-life should not be used due to a lack of vulnerability<br />

information about these products, and because the vendors will not be<br />

providing security updates.<br />

The <strong>Secunia</strong> <strong>CSI</strong> also lists all the programs and plug-ins which are patched and<br />

up-to-date. This can be used to verify that patches have been properly applied<br />

and that old insecure versions have been removed. It can also be used as a<br />

valuable and highly accurate supplement to other asset and license management<br />

tools. Many customers also use it to track the installation of non-approved<br />

programs and plug-ins.<br />

Flexible deployment<br />

The <strong>Secunia</strong> <strong>CSI</strong> offers various deployment options designed to suit your<br />

environment:<br />

Agent-less scanning of your systems can be performed out-of-the<br />

box. When running agent-less, the <strong>Secunia</strong> <strong>CSI</strong> utilises standard<br />

Windows networking services to scan the systems on your network.<br />

The agents can also be automatically deployed through the Microsoft<br />

WSUS/SCCM integration.<br />

Agent-based deployment is more flexible. It can be used in<br />

segmented networks and to scan systems that are not always online<br />

(e.g. laptops). The agents can also be automatically deployed through<br />

the Microsoft WSUS/SCCM integration.<br />

Appliance mode offers “agent-less” scanning from centralised hosts;<br />

in branch offices for example.<br />

CLI mode makes it possible to schedule and manage scans using other tools<br />

(e.g. log-on scripts).<br />

secunia.com<br />

1<br />

2<br />

3<br />

4<br />

5<br />

6<br />

The <strong>Secunia</strong> <strong>CSI</strong> scans computers in your<br />

network from a central location<br />

AProgram 1.0<br />

AProgram 1.0<br />

AProgram BProgram 1.0<br />

BProgram 1.0 1.0<br />

BProgram CProgram 1.0 3.0<br />

DProgram 2.0<br />

CProgram DProgram 3.0 2.0<br />

EProgram 1.0<br />

DProgram<br />

EProgram<br />

2.0<br />

1.0<br />

AProgram 1.0<br />

EProgram BProgram 1.0 1.0<br />

<strong>Secunia</strong><br />

<strong>Secunia</strong><br />

Advisory<br />

Advisory<br />

<strong>Secunia</strong><br />

Advisory<br />

EXE OCX DLL<br />

It scans all executables, including EXE, OCX,<br />

and DLL files using the <strong>Secunia</strong> File Signatures<br />

EXE OCX DLL<br />

All scan results are fed into the central<br />

management console for easier analysis<br />

The <strong>Secunia</strong> <strong>CSI</strong> tells you which version to<br />

update<br />

CProgram AProgram 1.0 3.0<br />

BProgram DProgram 1.0 2.0<br />

Automatic repackaging<br />

CProgram EProgram 1.0 3.0<br />

DProgram 2.0<br />

EProgram 1.0<br />

AProgram 1.2 Patch<br />

DProgram 2.1<br />

Patch<br />

A<br />

B<br />

DProgram 2.1<br />

Patch deployment<br />

<strong>Secunia</strong><br />

Advisory<br />

<strong>Secunia</strong><br />

Advisory<br />

AProgram 1.2 Patch A<br />

DProgram AProgram 2.1<br />

Patch B<br />

1.2 Patch A<br />

EXE OCX DLL<br />

EXE OCX DLL<br />

AProgram 1.2<br />

AProgram 1.2<br />

AProgram<br />

BProgram 1.0BProgram<br />

1.0 1.2<br />

CProgram 3.0 BProgram CProgram 3.0 1.0<br />

DProgram 2.1<br />

CProgram DProgram 2.1 3.0<br />

EProgram 1.0<br />

DProgram<br />

EProgram 1.0<br />

2.1<br />

AProgram 1.2<br />

EProgram BProgram 1.0 1.0<br />

Patch B<br />

EXE OCX DLL<br />

CProgram AProgram 3.0 1.2<br />

DProgram BProgram 1.0 2.1<br />

EProgram CProgram 1.0 3.0<br />

a) Deployment Using Microsoft WSUS<br />

Approval<br />

Approval<br />

Approval WSUS<br />

WSUS<br />

Approval<br />

WSUS<br />

b) Deployment Using Microsoft SCCM<br />

Upload SCCM<br />

Upload SCCM<br />

Upload SCCM<br />

DProgram 2.1<br />

EProgram 1.0<br />

Approval WSUS<br />

Upload<br />

SCCM<br />

Upload SCCM<br />

WSUS<br />

AProgram 1.0<br />

BProgram 1.0<br />

CProgram 3.0<br />

DProgram 2.0<br />

EProgram 1.0<br />

AProgram 1.0<br />

BProgram 1.0<br />

CProgram 3.0<br />

DProgram 2.0<br />

EProgram 1.0

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!