SandCat Scanner

Category:
Vulnerability Scanners
Website: http://www.syhunt.com/section.php?id=scanner
Manufacturer: Syhunt Security
Operating System: Windows

Description:
Providing more than 25,000 security checks this product seems to not only check known vulnerabilities on a server but also can test intrusion detection systems, and routers. The Scanner the part of the SandCat Suite that can be run from a remote location to identify, exploit and report vulnerabilities in a system.

Strengths:
   · Inexpensive
   · Configurable
   · Compatible with the Common Vulnerabilities and Exposures Initiative.
   · Scans may types of pages, asp, php, coldfusion, CGI and more
   · Security Report includes links to BUGTRAQ and other information for fixing the server.

Weaknesses:
   · No mention of recent technologies (ie. Asp.net, win2k3 server)
   · Fewer assessment tools than other enterprise level solutions
   · No mention of database attacks (SQL Server, MySQL etc)
   · Reporting Feature is minimal

Target:
Servers, firewalls, routers, intrusion detection systems

Mitigation/Recommendation:
patched, updated server

Price:
$202 - Single Host
$523 - 10 hosts
$952 - unlimited hosts

Penetration (3):
Low. Other solutions would be more attractive to Hackers, this is not open source and difficult to find.

Simplicity (8):
Beginner basic scanning is quite easy. The scanner includes an exploit terminal for attempt exact exploits, which may require knowledge of HTTP requests.

Damage Potential (1):
Minimal Data Gathering Only