Vulnerability Assessment

Vulnerability Assessment

Web System

The “Web System Vulnerability Assessment service” uses vulnerability assessment scan tools and other frequently used tools and commands to help users scan all sorts of network facilities and web systems in the network environment to test if there is any known vulnerability assessment. With professional analysis, we provide customers with possible improvement schemes to minimize the information security risk.

Service Contents

Tailor-made appropriate scanning strategy

Data will be collected according to different objects of evaluation to ensure safety during the evaluation process and accuracy of results.
Depending on different systems, facilities, network segments, categories, and degrees of importance to set up suitable scanning strategies:
Safety scanning evaluation will be made on routers, Microsoft Windows Server, UNIX server, and other network equipment
Scanning test capacities will be conducted on vulnerability assessments of network service, backdoor program, ID, password, DoS…etc.
Various built-in scanning strategies setup to scan at different levels targeting on Microsoft Windows Serve, Microsoft Web Server, Unix, Unix Web Server, Router/Switch and more

Tech people will conduct scanning at your place

Use different tools depending on users’ different environment

All-around vulnerability assessment analysis report

The vulnerability assessment report in Chinese (English) will include the following:

Top 20 high risk Web System list (including high, mid, and low risk parameters)
High, mid, and low risk number and ratio
Charts of statistics on total number of different vulnerability assessments
List of vulnerability assessments found on different Web Systems

Suggestions for vulnerability assessment patch up

Provide suggestions for vulnerability assessment patch up or system enhancement, such as install patch up program or upgrades. Close unnecessary services and other patch up schemes
Help customers or the equipment maintenance manufacturers to execute this task

Efficiency consultancy

Provide briefing on evaluation methods, tools, overall safety enhancement
Provide Chinese vulnerability assessment evaluation report, presentation, and electronic file, and CD-ROM documents

Follow-service

If customers are unable to install patch-up programs or encounter problems in AP operations after installing patch up programs, altering system set up and password, and more, they can call, fax, or e-mail us for consultation

Re-examination scan (advance service item)

Choose the same scan target or scan policy to execute re-examination
Presentation includes: explanations for re-examination, re-examination time, enhanced parts, un-enhanced parts
The documents presented include: Chinese re-examination result report, Chinese repaired vulnerability assessment report, CD-ROM with electronic files

Service Competitiveness

Documents presented include: Chinese re-examination result report, Chinese repaired vulnerability assessment report, CD-ROM with electronic files
Evaluation on enterprises’ internal network and system safety to avoid being known (preventable) leak attacks
Help system management staff to patch up leaks to stop hackers from taking chances
Help enterprises and organizations to stipulate and fix-up information safety policy to minimize information safety risk

Web Applications

Web applications vulnerability assessment evaluation service” is provided by our company’s professional service team. They use web page vulnerability assessment scanning tool to scan important websites. Safety leaks of websites’ applications will be listed with the results of cross-references. In addition, using vulnerability assessment analysis report, they help customers in repairing vulnerability assessments existing in web page applications. Causes and improvement suggestions will be provided to help customers in enhancing the security strength of the information websites.

Service Contents

Remote scanning

IBM Rational AppScan will be used as major tool to scan webpages. Major applications of websites will be scannedn

All round webpage vulnerability assessment analysis report

Generate vulnerability assessment and testing report of English websites, including the following:

The ratio of webpages with safety leaks in the website
URLs with more safety leaks
Number of high, mid, and low information leaks discovered
URLs with safety problems, risk class, precise suggestions on patch-up and enhancement
Detail explanations on fixing up all safety leaks
URL contents reports on website testing process

Presentation for suggestions on vulnerability assessment repairing

Provide suggestions for vulnerability assessment patch up or system enhancement, and conduct evaluation of applicability and appropriateness on repairing schemes
Help customers or the equipment maintenance manufacturers to execute this task

Vulnerability assessment verification service (advanced service item)

vulnerability assessments and fix-up suggestions will be provided

Re-examination scan (advanced service item)

Use the same scan targets and scan policy to execute re-examination scan

Service Competitiveness

Can help enterprises to know all existing vulnerability assessment conditions in all sorts of websites. Using webpage vulnerability assessment scanning analysis report to obtain effective improvement schemes
Produce reports the meet the safety specification standard for the tracing, recording and managing safety leak repairing conditions
Evaluate enterprise website safety to avoid attacks via webpage leaks from any known (preventable) sources
Help webpage developers to patch up webpage leaks to prevent hackers from taking chances and minimize overall information safety risks

Contact us, we'll provide you the solution fits your needs