SCADA Plugins for Nessus 3 released
Tenable announced this week that 32 Nessus plugins specific to SCADA have been added. These are the direct result of Tenable and Digital Bond working together to bring this here-to-for unavailable capability to the industry. It used to be that using the name Nessus (or any vulnerability scanning/systems mapping solution) in the same sentence as SCADA was near to sacrilegious. Civil Engineers would quake and cower at the mere thought of TCP packet mangling anywhere near their SCADA networks.
Alas, these plugins are provided on the same basis as any other plugin from Tenable. They may prove to be useful if you find yourself in need of assessing the state of a network with SCADA technologies. However, I will suggest that you do not use these plugins if you don't know what you are doing (or Nessus for that matter), and further suggest you not try to scan anything that even remotely resembles a SCADA environment without all the usual explicit approvals, consents, permissions, and get-out-of-jail-free cards. (This is known as my Caveat h4x0r.)
Alas, these plugins are provided on the same basis as any other plugin from Tenable. They may prove to be useful if you find yourself in need of assessing the state of a network with SCADA technologies. However, I will suggest that you do not use these plugins if you don't know what you are doing (or Nessus for that matter), and further suggest you not try to scan anything that even remotely resembles a SCADA environment without all the usual explicit approvals, consents, permissions, and get-out-of-jail-free cards. (This is known as my Caveat h4x0r.)