Video - Scanning for Vulnerabilities Using Nessus

Ethical Hacking - A Hands-On Approach to Ethical Hacking Scanning for Vulnerabilities Using NESSUS
11 minutes
Share the link to this page
Copied
  Completed
You need to have access to the item to view this lesson.
One-time Fee
$99.99
List Price:  $139.99
You save:  $40
€96.05
List Price:  €134.47
You save:  €38.42
£78.28
List Price:  £109.60
You save:  £31.31
CA$143.28
List Price:  CA$200.59
You save:  CA$57.31
A$160.13
List Price:  A$224.20
You save:  A$64.06
S$135.03
List Price:  S$189.05
You save:  S$54.02
HK$777
List Price:  HK$1,087.84
You save:  HK$310.83
CHF 88.49
List Price:  CHF 123.89
You save:  CHF 35.40
NOK kr1,126.80
List Price:  NOK kr1,577.57
You save:  NOK kr450.76
DKK kr717.22
List Price:  DKK kr1,004.14
You save:  DKK kr286.92
NZ$176.87
List Price:  NZ$247.63
You save:  NZ$70.75
د.إ367.26
List Price:  د.إ514.17
You save:  د.إ146.91
৳11,929.84
List Price:  ৳16,702.26
You save:  ৳4,772.41
₹8,538.94
List Price:  ₹11,954.85
You save:  ₹3,415.91
RM448.65
List Price:  RM628.13
You save:  RM179.48
₦154,544.52
List Price:  ₦216,368.52
You save:  ₦61,823.99
₨27,792.76
List Price:  ₨38,910.97
You save:  ₨11,118.21
฿3,416.65
List Price:  ฿4,783.45
You save:  ฿1,366.80
₺3,519.17
List Price:  ₺4,926.99
You save:  ₺1,407.81
B$637.56
List Price:  B$892.61
You save:  B$255.05
R1,874.85
List Price:  R2,624.87
You save:  R750.01
Лв188
List Price:  Лв263.20
You save:  Лв75.20
₩145,711.39
List Price:  ₩204,001.77
You save:  ₩58,290.38
₪364.90
List Price:  ₪510.87
You save:  ₪145.97
₱5,865.41
List Price:  ₱8,211.81
You save:  ₱2,346.40
¥15,715.92
List Price:  ¥22,002.92
You save:  ¥6,286.99
MX$2,016.21
List Price:  MX$2,822.78
You save:  MX$806.56
QR363.08
List Price:  QR508.32
You save:  QR145.24
P1,386.50
List Price:  P1,941.15
You save:  P554.65
KSh12,902.70
List Price:  KSh18,064.30
You save:  KSh5,161.60
E£5,082.90
List Price:  E£7,116.27
You save:  E£2,033.36
ብር12,710.92
List Price:  ብር17,795.80
You save:  ብር5,084.87
Kz91,190.88
List Price:  Kz127,670.88
You save:  Kz36,480
CLP$98,919.10
List Price:  CLP$138,490.70
You save:  CLP$39,571.60
CN¥729.82
List Price:  CN¥1,021.78
You save:  CN¥291.96
RD$6,081.12
List Price:  RD$8,513.82
You save:  RD$2,432.69
DA13,508.78
List Price:  DA18,912.83
You save:  DA5,404.05
FJ$231.84
List Price:  FJ$324.58
You save:  FJ$92.74
Q768.97
List Price:  Q1,076.59
You save:  Q307.62
GY$20,886.35
List Price:  GY$29,241.72
You save:  GY$8,355.37
ISK kr13,953.60
List Price:  ISK kr19,535.60
You save:  ISK kr5,582
DH1,006.73
List Price:  DH1,409.47
You save:  DH402.73
L1,841.91
List Price:  L2,578.75
You save:  L736.83
ден5,908.74
List Price:  ден8,272.47
You save:  ден2,363.73
MOP$798.63
List Price:  MOP$1,118.11
You save:  MOP$319.48
N$1,856.28
List Price:  N$2,598.86
You save:  N$742.58
C$3,673.45
List Price:  C$5,142.98
You save:  C$1,469.52
रु13,596.38
List Price:  रु19,035.48
You save:  रु5,439.09
S/371.74
List Price:  S/520.45
You save:  S/148.71
K405.18
List Price:  K567.27
You save:  K162.09
SAR375.47
List Price:  SAR525.68
You save:  SAR150.20
ZK2,762.82
List Price:  ZK3,868.06
You save:  ZK1,105.23
L478.38
List Price:  L669.75
You save:  L191.37
Kč2,417.95
List Price:  Kč3,385.23
You save:  Kč967.27
Ft39,478.73
List Price:  Ft55,271.81
You save:  Ft15,793.07
SEK kr1,088.11
List Price:  SEK kr1,523.40
You save:  SEK kr435.29
ARS$102,698.50
List Price:  ARS$143,782.01
You save:  ARS$41,083.50
Bs689.84
List Price:  Bs965.80
You save:  Bs275.96
COP$441,236.66
List Price:  COP$617,748.98
You save:  COP$176,512.31
₡50,688.88
List Price:  ₡70,966.47
You save:  ₡20,277.58
L2,536.46
List Price:  L3,551.14
You save:  L1,014.68
₲778,577.57
List Price:  ₲1,090,039.75
You save:  ₲311,462.17
$U4,443.67
List Price:  $U6,221.32
You save:  $U1,777.64
zł409.39
List Price:  zł573.17
You save:  zł163.77
Already have an account? Log In

Transcript

Greetings in initial video presentation, we're going to see how we go about conducting a vulnerability scan using nessus. We're going to pick up where our last lab left off. And that's where we installed nessus as a container up inside of Docker, to clear out my cache and to get a fresh install of Kali, I have rebooted. So I'm going to have to go up inside of Docker, find an image for nessus, I'm going to have to reattach it so that we can get into the web interface. And we're going to do this by going up and we're going to type in Docker space, PS space dash, small letter A, I'm gonna go ahead and hit Enter. And you're gonna see just a moment when I go fullscreen, that we do have our nessus image currently installed, and this is the container ID that it uses.

So I'm gonna go ahead and copy that. I'm going to go down here and I'm gonna use my up arrow. And we're going to go ahead and find that previous command that we use in There it is. So it's already got everything that we need and that is Docker space start space dash dash attach, followed by the container ID. And you saw how I got that, I had to show the containers that were present inside of Docker. And then I was able to find that container ID, I'm going to go ahead and hit enter.

I won't be able to see this terminal refresh, I'm gonna have to close out my terminal, I'm gonna have to open up a fresh one. And we're going to have to go back in and use the Docker command to show currently what containers are up inside of Docker. So I've typed in again, doctors face to face dash small letter A. Now I'm going to go ahead and make this full screen again and you'll see that it is now up and it is running and has been for 42 seconds. We cannot close out the terminal. And I'm going to open up my browser.

Our browser has opened up and I've gone up into the address bar and I've typed In the URL to access the nessus web interface. Now remember, this is a few TPS. So I've got to type that in along with the four slash four slash localhost colon, the port number that NASA needs to use, which is 8834. Now, don't panic when you see that it's compiling plugins. This is what it's going to do before, it allows us to go ahead and have access to begin our first scan. Took my machine about five to seven minutes to compile those plugins.

So do Be patient when you log on to do your first scan. So I'm going to go ahead and type in my username and password. You can tell Firefox to go ahead and remember your username and password that will log you in just a little bit quicker. So once we have logged into nessus, we are presented with the my scans page. Now to get started, we have to create a new scan. So we're going to go over here to the right, we're going to click on the new Scan button.

From here, you'll see that there are a number of scanning templates that you can use. These are already pre configured. And if you want to look for a particular type of scan, you probably find it in here. And now these are all configurable, and there are other nessus templates that you can actually download from the internet for other things that you might have running on your network. So let's go ahead and click on the Advanced scan. As I previously stated, these scanning templates are already pre configured, there are actually a profile of the most common settings that you would find for that particular template.

Now in this case, we're using the advanced scan template. So all of the settings have already been configured for us. Now what we have to do next is go down here to where it says targets and we have to type in the IP address for the range that we want nessus to scan, we're going to need to get our network range. So to get this, I'm going to go ahead and minimize my nessus window and I'm going to open up a terminal. And that's the terminal window. I'm going to type in if config to check to see what the IP address is for this particular machine.

So I'm going to type in ifconfig. And I'm going to scroll back up to the top and I'm going to look for my Ethernet zero adapter. My Ethernet zero is configured for the network 192 dot 168 dot zero, and it has been assigned a host IP of 30. I'm gonna go ahead and close this out. I'm gonna go ahead and maximize my window here for nessus. And I'm going to type in 192 dot 168 dot zero dot one.

And I'm going to scan the network range all the way up to 254. Now that To every possible IP address that is on this network, scroll on down here to the bottom. And we're going to click on Save, I can give this scan a friendly name, I'm going to call it test, scroll on back down. And I'm going to pull down this window here. And I'm going to select launch. It's going to take a few minutes for NASA's to set itself up and go out and scan your local area network.

And as it does, you're going to see that there's going to be some information that gets updated. You can click on the name of your scan anytime you want. And you can go look at the results. So I'm going to go ahead and launch over to the next page. And we're going to see that the test scan currently has no results. So let's give it some time.

So as the scan results come in, you'll be able to see the IP address of the machine and over to the right you'll be able to get a great Out of exactly what vulnerabilities are currently present. So you can see that they are color coded so red is critical. The orange is going to be high yellow is medium and then we have low and info. Right now, all we have showing for this particular IP address are two information, informational messages. So you can click on the scan results, and you can get more information about exactly what those informational messages are or the critical or the high or whatever vulnerability has been discovered. So after eight minutes, my nessa scan has completed.

And I want to remind everyone that when you type in that IP address for your networking range to scan, make sure that you don't have any spaces between the dash. So it identified the following machines on my network and I can go in and I can look at the results. Let's look at the medium. She was going on in here. See SMB signing not required SSL certificate cannot be trusted, wrong hostname, SSL, self signed certificate, it goes on and on, then we get into the informational messages. So you can see that you can get a lot of information here.

But if we click on any of these findings, for instance, I'm going to go in here, you can get all the information about this particular vulnerability. And then you can also find ways to mitigate it. All right, so you go over here you can find all the information about when it was found and discovered and all that fun stuff. And you can scroll on down and you can get some information about the port that it runs on and how it was discovered. And you can also see all the different articles and the findings from nessus samba.org and Microsoft comm You can see all these different organizations have something to say about this particular vulnerability. If you need to get back, just hit the back arrow, and you're back to where you were.

Now, again, these results will vary. But this is actually a pretty cool thing. Now, if you're on a real network, or you got routers, and you've got firewalls, and you've got all the servers, and you've got all that fun stuff to scan, you're going to see a lot of interesting stuff in here. And that's going to tell you exactly where you can begin to do your vulnerability analysis. So if you happen to get lucky and find some criticals or highs on a client's network, not your own, then you're going to be able to actually do some actual pen testing. And again, when those results show up, inside of the scan results, you just click on, it's going to tell you exactly what you need to know to be able to actually exploit that particular vulnerability.

So when we go into a client, we're usually have a pelican case. And inside that Pelican case, we're going to have at least five or six different laptops and each laptop is going to be configured with Ubuntu, and then move on to is going to have all these different tools installed on it, such as nessus. So you can see how we install the container for nessus. Using Kali Well, we can do the same thing with Ubuntu. And I can have all those tools available to me on Ubuntu. Now, that's because a lot of clients will get a little upset with you, if you bring in Kali or some of these other hacking suites.

So we normally build a clean install of Ubuntu, make sure it's updated. Then we install our container for nessus or open bass or whatever it is or creating a container for that usually puts the client At ease, because when you walk into a bank or you walk into someplace where they security's really tough, they're going to look at your laptops. So make sure that you've got everything dress, right dress and don't think that you're going to bring your Apple machine or your Windows laptop onto somebody's work network, because that's not going to happen. Nobody's going to allow anybody to come in off of the street and just drop a laptop onto their network and begin scanning. That's because Windows is vulnerable. That's why it has a virus scanner.

Same thing with Apple. We use Linux, and we use Linux exclusively for pen testing. So that's going to cover this short video presentation on how we go about conducting a nessus scan on our network. So if you have any concerns or questions about any of the material that was covered in this short video presentation, don't hesitate to reach out and contact your instructor and I'll see you in my next video.

Sign Up

Share

Share with friends, get 20% off
Invite your friends to LearnDesk learning marketplace. For each purchase they make, you get 20% off (upto $10) on your next purchase.