This application is designed to perform a security assessment of the
target. Retina scans ports, traceroutes, performs audits with numerous
canned scripts, generates precise reports, provides recommended solutions
for security concerns, and much more. For the purposes of this
lab, the 30-day demonstration version will be used.
Procedure: Install, set parameters, and execute.
Double-click the Retina4986Demo icon to start the Retina installation.
Install the Retina application with the default options. If the Microsoft Data
Access Components (MDAC) are not installed, accept Retina??™s offer to install
them. Click Next.
Vulnerability Scanning 393
In this example, the MDAC will be installed.
The Retina installation will complete. Accept the default option to Launch
Retina. Click Finish.
394 Practical Hacking Techniques and Countermeasures
Retina is helpful from the beginning by offering a wizard when starting
up. In this example, the wizard was canceled by pressing the Cancel button.
Retina will start with the IP address of the machine it is installed on in the
Address block.
Vulnerability Scanning 395
Enter the target IP address or Hostname. Click on the start button or
press the Enter key.
Retina will scan the target for open ports, any shares, users, services, machine
information, and will perform a security audit of the target for known vulnerabilities.
396 Practical Hacking Techniques and Countermeasures
In this example, a critical SNMP error is selected and the details of this
error are displayed in the lower section of the application, including these
areas:
Description
Risk Level
How To Fix
Related Links
CVE link (Common Vulnerabilities and Exposures Web site)
*Note: Retina is used by attackers to find faults and exploit them.
Pages:
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152