MENU

Fun & Interesting

Nessus Tutorial for Beginners: Vulnerability Management (PUT THIS ON YOUR RESUME!)

Josh Madakor 150,738 3 years ago
Video Not Working? Fix It Now

NEW VERSION OF VIDEO: https://youtu.be/p0I8tr1MNVw 💻 Environment Access + Other Hands-On Labs + Cyber Internship 💻 https://skool.com/cyber-range ——— 0:00 Intro 0:55 What is vulnerability management? 1:15 Put this on your resume (example) 1:30 Install VMWare Player 2:00 Download Windows 10 ISO 2:50 Download and Install Nessus Essentials 5:30 Setup Virtual Machine 8:30 Ensure connectivity with VM 10:05 Create a new scan in Nessus 12:00 Inspecting the first scan (no credentials) 13:38 Configuring VM for credentialed scans 16:20 First scan with credentials 17:15 Inspecting First scan with credentials results 20:00 Installing a deprecated Firefox on our VM 21:45 Inspect scan results after installing deprecated firefox 23:10 Remediating some vulnerabilities 24:39 Inspect scan results after remediating some vulnerabilities 26:20 Other thoughts on enterprise vulnerability management 27:47 Outro ——— Download and install VirtualBox or VMWware Workstation Player for free: https://www.vmware.com/products/workstation-player/workstation-player-evaluation.html Download Windows 10 ISO: https://www.microsoft.com/en-us/software-download/windows10 save to C:\ISOs Download Nessus Essentials - https://www.tenable.com/products/nessus/nessus-essentials Install Nessus Essentials (get activation code from your email) [nessus key] http://localhost:8834/WelcomeToNessus-Install/welcome [username]/[pw] Create Windows 10 VM with bridged NIC admin/Password1 Enable Remote Registry Enable Printer and File Sharing Disable Firewall Disable User Account Control (Reg hack too) https://community.tenable.com/s/article/Scanning-with-non-default-Windows-Administrator-Account Install Deprecated firefox on VM: https://ftp.mozilla.org/pub/firefox/releases/3.6.12/win32/en-US/ Scan your VM without inserting credentials into Nessus, observe report My Scans ... "Create a new scan" ... "Basic Network Scan" Insert Credentials in Nessus and re-scan VM, observe report* Uninstall deprecated Firefox Rescan the VM, observe report Create Windows XP VM with bridged NIC Set secpol: https://docs.tenable.com/nessus/Content/EnableWindowsLoginsForLocalAndRemoteAudits.htm#Configure-a-Local-Account Setup Network sharing Scan XP VM with credentials, observe report DISCLAIMER: This video description has some affiliate links and I may receive a small commission. I only share stuff that I use and believe in. Thanks so much for your support 🥺

Comment