Is there a good vulnerability scanner free for home use? Needs to check Mac, Windows, Windows Server, Proxmox, OpnSense, Linux, IOs, Andeoid and IpadOS for vulnerabilities and suggestions how to fix or make Firewall rules to secure. I have a M365 Fam account and Defender but i‘m not shure if this is possible like it is with Sentinel and Arc.
Videos
With a few dozen end points, VMs, containers, NAS, servers, various OSes etc... what is everyone using for Vuln Scanning or security tools for the home network? I mean I have OPNSense set to pretty restrictive and I block adds but is there something I can use to scan for known vulnerabilities? I would love to run Tenable or Qualys but I can't afford those licenses, is there an open source product that I can self host that is good enough?
Is there a service, hopefully free, that will try to break into your home network from the Internet? At least detect open ports, for example.
I imagine one way is to get a free account on AWS try to hack your network but that's work I 'd like to avoid
How many of you are security scanning your home networks?
We use Nessus at work, as well as some other tooling. I recently discovered that they provide a free version for home use. It's really worth checking out and can be a real eye-opener.
To get started:
-
Register for a home-use activation code: https://www.tenable.com/products/nessus-home
-
Download and install Nessus: https://www.tenable.com/products/nessus/select-your-operating-system#download
-
Create a new 'Basic Network Scan'.
-
Give it a name
-
Add your targets, e.g. 192.168.0.0/24, 172.16.0.0/24 etc
-
Save, and then launch the scan.
The Nessus Home information page says that the number of scanned IPs is limited but it doesn't appear to be in practice.
There are other tools around that have similar functionality, including OpenVAS which is free and open source.
Scan your networks with your preferred tool(s) and post here if you need help with resolving any discovered vulnerabilities.
What you guys use to scan your lab vulnerability? I know of openvas not sure if that still open-sourced. Diffrent alternatives.
I run my own HomeLab and am looking for a vulnerability scanning tool like nessus or openvas. Aim is obviously for it to be open source and free but main gain is to also have the ability for enterprise detections. Openvas for example has a community feed and an enterprise feed and the community edition doesn't not have certain products that are considered enterprise in their scans. I really do not wanna have to pay for a scanner. Anything out there I could put together or a solution I could build to facilitate this task?
So I am basically looking for a practical guide for a pentest/vulnerability assesment on house with 3rd party domotic systems (such as KNX), own self-hosted server & stuff (QNAP NAS, Plex), and own home automation server (HomeAssistant) with remote access.
At the end, I should be more aware of what the security holes are and what I should try and secure and how. With the results I'll be going to the 3rd party domotic system administrator and be adjusting my own systems as well. I.e., might result in using a VPN for remote access.
Basically, the security test should reveal what can be improved, how, and where it makes sense keeping user comfort (including non-tech users) and security both in mind.
Any practical guides on how to accomplish this?
(Forgot to flair previous)