Has anyone run an objective comparison of Nessus and Skipfish

Posted by jldugger on Server Fault See other posts from Server Fault or by jldugger
Published on 2010-03-22T20:51:46Z Indexed on 2010/03/22 21:01 UTC
Read the original article Hit count: 425

We recently set up Nessus, but the annual cost is not cheap. Recently Google published SkipFish which appears to compete in the area of webapps.

As best I can tell, Nessus operates via a large database of known exploits. And, as best as I can tell, Skipfish automatically generates vulnerability tests. Has anyone done a comparison of the effectiveness of these two approaches yet?

© Server Fault or respective owner

Related posts about vulnerability-scanning

Related posts about security