The
Security Auditor's Research Assistant (SARA) is a third generation
network security analysis tool that is:
- Operates under Unix, Linux, MAC OS/X or Windows (through
coLinux) OS'.
- Integrates the National Vulnerability Database
(NVD).
- Performs SQL injection tests.
- Performs exhaustive XSS tests
- Can adapt to many firewalled environments.
- Support remote self scan and API facilities.
- Used for CIS benchmark
initiatives
- Plug-in facility for third party apps
- CVE
standards support
- Enterprise search module
- Standalone or daemon mode
- Free-use open SATAN oriented license
- Updated twice a month (we try)
- User extension support
- Based on the SATAN model
The first generation assistant, the Security
Administrator's Tool for Analyzing Networks (SATAN) was developed
in early 1995. It became the benchmark for network security analysis
for several years. However, few updates were provided and the tool
slowly became obsolete in the growing threat environment.
|
|
|
|

Advanced Research's philosophy relies
heavily on software re-use. Rather than inventing a new module, SARA is
adapted to interface to other community products.
For instance, SARA interfaces with
the popular NMAP package for superior "Operating System fingerprinting". Also,
SARA provides a transparent interface to SAMBA for SMB security analysis.
A recent addition to SARA is the ability to operate on a Windows 200* and Windows XP platforms. SARA relies on
Cooperative Linux to provide the proper operating environment to operate as Windows process. This product is called
coSARA.
You can
subscribe to the SARA
List Server to get the latest information on SARA. Also, you can familiarize
yourself with SARA by reviewing the SARA
man page.
You can find a detailed overview briefing
here. The briefing provides the new information and configuration options of SARA 5.
Advanced Research recently integrated the SARA
Pro Report Writer into the standard SARA product.
The Report
Writer can be configured
to generate a wide variety of output.
The current version of SARA can be obtained at the
SARA (Version 7.8.3) and
MD5 check from
our download site. Also, coSARA is available at
coSARA-7.4.1.exe.
|