by Megan Daudelin
September 10, 2015
Vulnerability mitigation is a constantly moving target as new exploits are developed and new vulnerabilities are discovered. In order to effectively mitigate vulnerabilities on a network, a security team must be aware of what current vulnerabilities exist. Vulnerability mitigation can be precisely tailored to address the current threats imposed by specific exploit frameworks. As new exploit frameworks and vulnerabilities are exposed, mitigation efforts have to be adjusted accordingly.
The Exploits by Platform report assists security teams with the process of vulnerability mitigation by providing an enhanced view of the security of a network against specific exploit frameworks. The information in this report presents information about current vulnerabilities on the network through several views. Data is filtered to provide details on exploit frameworks, operating systems, severities, and associated plugins.
The components in this report provide several perspectives on the vulnerability status of the network. These views help security teams determine where mitigation efforts should be focused in order to effectively defend against specific exploit frameworks. The effectiveness of mitigation efforts over time is conveyed through trend data so that processes can be tailored to address persisting vulnerabilities. The extensive information about the current vulnerabilities found on the network can serve as a starting point for mitigation efforts. Together, the components in this report provide a current view of the vulnerability status of the network that can be used to effectively enhance mitigation efforts.
The report is available in the SecurityCenter Feed, a comprehensive collection of dashboards, reports, assurance report cards and assets. The report can be easily located in the SecurityCenter Feed under the category Threat Detection & Vulnerability Assessments. The report requirements are:
- SecurityCenter 4.8.2
- Nessus 6.4.3
SecurityCenter Continuous View (CV) provides continuous network monitoring, vulnerability identification, risk reduction, and compliance monitoring. Nessus is continuously updated with information about advanced threats and zero-day vulnerabilities, and new types of regulatory compliance configuration audits. By integrating with Nessus, SecurityCenter CV provides the most comprehensive view of vulnerability data.
This report contains the following chapters:
- Executive Summary: This chapter provides a series of tables to provide a summary view on vulnerabilities by framework and operating system. The first table shows the counts of vulnerabilities by severity for various major exploit frameworks. The second table displays the counts of exploitable vulnerabilities by operating system.
- Exploit Framework Trends: This chapter depicts the counts of vulnerabilities on the network by exploit framework during the past 25 days. This table can help security teams monitoring the effectiveness of their mitigation efforts.
- Top Exploitable Vulnerabilities by Framework: This chapter contains detailed vulnerability lists for several exploit platforms. Each table lists the top ten exploitable vulnerabilities by count for a particular exploit framework. The information presented helps security teams to focus their effort in order to address specific vulnerabilities.