{"id":50,"date":"2024-01-06T12:13:26","date_gmt":"2024-01-06T12:13:26","guid":{"rendered":"https:\/\/harrisonjonesit.co.uk\/?p=50"},"modified":"2024-01-17T16:44:47","modified_gmt":"2024-01-17T16:44:47","slug":"perfectly-on-furniture","status":"publish","type":"post","link":"https:\/\/harrisonjonesit.co.uk\/?p=50","title":{"rendered":"Vulnerability Management Lab"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-post\" data-elementor-id=\"50\" class=\"elementor elementor-50\">\n\t\t\t\t\t\t\t<div class=\"elementor-element elementor-element-7241c473 e-flex e-con-boxed e-con e-parent\" data-id=\"7241c473\" data-element_type=\"container\" data-settings=\"{&quot;content_width&quot;:&quot;boxed&quot;}\" data-core-v316-plus=\"true\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-b4fa360 elementor-widget elementor-widget-heading\" data-id=\"b4fa360\" data-element_type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t<style>\/*! elementor - v3.18.0 - 20-12-2023 *\/\n.elementor-heading-title{padding:0;margin:0;line-height:1}.elementor-widget-heading .elementor-heading-title[class*=elementor-size-]>a{color:inherit;font-size:inherit;line-height:inherit}.elementor-widget-heading .elementor-heading-title.elementor-size-small{font-size:15px}.elementor-widget-heading .elementor-heading-title.elementor-size-medium{font-size:19px}.elementor-widget-heading .elementor-heading-title.elementor-size-large{font-size:29px}.elementor-widget-heading .elementor-heading-title.elementor-size-xl{font-size:39px}.elementor-widget-heading .elementor-heading-title.elementor-size-xxl{font-size:59px}<\/style><h2 class=\"elementor-heading-title elementor-size-default\">Vulnerability Management Lab<\/h2>\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-e11881b e-flex e-con-boxed e-con e-parent\" data-id=\"e11881b\" data-element_type=\"container\" data-settings=\"{&quot;content_width&quot;:&quot;boxed&quot;}\" data-core-v316-plus=\"true\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-2a10b3e6 elementor-widget elementor-widget-text-editor\" data-id=\"2a10b3e6\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t<style>\/*! elementor - v3.18.0 - 20-12-2023 *\/\n.elementor-widget-text-editor.elementor-drop-cap-view-stacked .elementor-drop-cap{background-color:#69727d;color:#fff}.elementor-widget-text-editor.elementor-drop-cap-view-framed .elementor-drop-cap{color:#69727d;border:3px solid;background-color:transparent}.elementor-widget-text-editor:not(.elementor-drop-cap-view-default) .elementor-drop-cap{margin-top:8px}.elementor-widget-text-editor:not(.elementor-drop-cap-view-default) .elementor-drop-cap-letter{width:1em;height:1em}.elementor-widget-text-editor .elementor-drop-cap{float:left;text-align:center;line-height:1;font-size:50px}.elementor-widget-text-editor .elementor-drop-cap-letter{display:inline-block}<\/style>\t\t\t\t<!-- wp:paragraph -->\n<p>In this project I created a basic virtual machine in VMware (although this could be done locally) and installed Nessus which is a vulnerability scanner\\detection tool that can be used at home or in an enterprise environment.<\/p>\n<!-- \/wp:paragraph --><!-- wp:paragraph -->\n<p>this tool is very simple to use so I downloaded some old software (Firefox 2015) that likely had discovered vulnerabilities and chose the &#8216;basic network scan&#8217; option against the IP address of the VM.<\/p>\n<!-- \/wp:paragraph --><!-- wp:image {\"id\":87,\"width\":\"841px\",\"height\":\"auto\",\"sizeSlug\":\"full\",\"linkDestination\":\"none\"} -->\n<figure class=\"wp-block-image size-full is-resized\"><img fetchpriority=\"high\" decoding=\"async\" width=\"683\" height=\"522\" src=\"https:\/\/harrisonjonesit-co-uk.preview-domain.com\/wp-content\/uploads\/2024\/01\/vuln-scan.png\" alt=\"\" class=\"wp-image-87\" style=\"width: 841px; height: auto;\" srcset=\"https:\/\/harrisonjonesit.co.uk\/wp-content\/uploads\/2024\/01\/vuln-scan.png 683w, https:\/\/harrisonjonesit.co.uk\/wp-content\/uploads\/2024\/01\/vuln-scan-300x229.png 300w\" sizes=\"(max-width: 683px) 100vw, 683px\" \/><\/figure>\n<!-- \/wp:image --><!-- wp:paragraph -->\n<p>-As this is old software, many vulnerabilities were detected.<\/p>\n<!-- \/wp:paragraph --><!-- wp:image {\"id\":88,\"sizeSlug\":\"full\",\"linkDestination\":\"none\"} -->\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" width=\"618\" height=\"268\" src=\"https:\/\/harrisonjonesit-co-uk.preview-domain.com\/wp-content\/uploads\/2024\/01\/reults.png\" alt=\"\" class=\"wp-image-88\" srcset=\"https:\/\/harrisonjonesit.co.uk\/wp-content\/uploads\/2024\/01\/reults.png 618w, https:\/\/harrisonjonesit.co.uk\/wp-content\/uploads\/2024\/01\/reults-300x130.png 300w\" sizes=\"(max-width: 618px) 100vw, 618px\" \/><\/figure>\n<!-- \/wp:image --><!-- wp:paragraph -->\n<p>-In Nessus. the recommendation was obviously to update to the latest version of Firefox. To imitate a real situation I updated to the latest version of Firefox and insured all windows updates were completed before running another scan to confirm remediation.<\/p>\n<!-- \/wp:paragraph --><!-- wp:image {\"id\":89,\"sizeSlug\":\"full\",\"linkDestination\":\"none\"} -->\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" width=\"597\" height=\"247\" src=\"https:\/\/harrisonjonesit-co-uk.preview-domain.com\/wp-content\/uploads\/2024\/01\/scan-2.png\" alt=\"\" class=\"wp-image-89\" srcset=\"https:\/\/harrisonjonesit.co.uk\/wp-content\/uploads\/2024\/01\/scan-2.png 597w, https:\/\/harrisonjonesit.co.uk\/wp-content\/uploads\/2024\/01\/scan-2-300x124.png 300w\" sizes=\"(max-width: 597px) 100vw, 597px\" \/><\/figure>\n<!-- \/wp:image --><!-- wp:paragraph -->\n<p>As above this confirms that many vulnerabilities were remediated which would be a successful exercise in a real situation. overall this project introduced me to the capabilities of Nessus and the importance of Security best practices including ensuring all applications are safe and up to date. in my Job we use Microsoft Defender for a similar use where it scans the entire network constantly and provides a security score based on detected vulnerabilities. However Nessus appears to be more useful for single machines and I enjoyed the simplicity and ease of the application.<\/p>\n<!-- \/wp:paragraph -->\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>Vulnerability Management Lab In this project I created a basic virtual machine in VMware (although this could be done locally) and installed Nessus which is a vulnerability scannerdetection tool that can be used at home or in an enterprise environment. this tool is very simple to use so I downloaded [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":42,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[1],"tags":[],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/harrisonjonesit.co.uk\/index.php?rest_route=\/wp\/v2\/posts\/50"}],"collection":[{"href":"https:\/\/harrisonjonesit.co.uk\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/harrisonjonesit.co.uk\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/harrisonjonesit.co.uk\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/harrisonjonesit.co.uk\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=50"}],"version-history":[{"count":8,"href":"https:\/\/harrisonjonesit.co.uk\/index.php?rest_route=\/wp\/v2\/posts\/50\/revisions"}],"predecessor-version":[{"id":332,"href":"https:\/\/harrisonjonesit.co.uk\/index.php?rest_route=\/wp\/v2\/posts\/50\/revisions\/332"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/harrisonjonesit.co.uk\/index.php?rest_route=\/wp\/v2\/media\/42"}],"wp:attachment":[{"href":"https:\/\/harrisonjonesit.co.uk\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=50"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/harrisonjonesit.co.uk\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=50"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/harrisonjonesit.co.uk\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=50"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}