VulnWhisperer will download reports from the tool of your choice (currently nessus or qualys) using their API. Once the report is downloaded the data is read, normalized and written to disk. There are logstash files created for each file format that consume the new file, which can be setup to tag your critical assets, compliance data (HIPAA, PCI, etc). Since VulnWhisperer downloads all historical scans, you can track when assets had critical vulnerabilities and when they were remediated using the swimlane in the middle. Users can also track risk over time. So while it doesn't allow for a user to input their own remediation time, it does organically show you when an assets risk score changed from a 10 to a 5. That transition is an indicator the vulnerability has been mitigated. The challenging part is it will only show you when the last scan ran and not the time a patch was applied. Check out VulnWhisper at Github here - https://github.com/austin-taylor/VulnWhisperer
author | adventuretours |
---|---|
permlink | vulnwhisper-creating-actionable-data-from-vuln-scans |
category | infosec |
json_metadata | {"tags":["infosec","security","malware","auditing"],"links":["https://github.com/austin-taylor/VulnWhisperer"],"app":"steemit/0.1","format":"markdown"} |
created | 2018-01-01 19:58:54 |
last_update | 2018-01-01 19:58:54 |
depth | 0 |
children | 1 |
last_payout | 2018-01-08 19:58:54 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.000 HBD |
promoted | 0.000 HBD |
body_length | 982 |
author_reputation | 4,015,949,422 |
root_title | "VulnWhisper - creating actionable data from vuln scans" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 0 |
post_id | 26,426,893 |
net_rshares | 2,030,311,868 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
victorfly | 0 | 445,773,500 | 100% | ||
ikorlyakov | 0 | 434,315,468 | 100% | ||
adventuretours | 0 | 581,477,400 | 100% | ||
graffitak | 0 | 568,745,500 | 100% |
Congratulations @adventuretours! You have completed some achievement on Steemit and have been rewarded with new badge(s) : [](http://steemitboard.com/@adventuretours) You published 4 posts in one day Click on any badge to view your own Board of Honor on SteemitBoard. For more information about SteemitBoard, click [here](https://steemit.com/@steemitboard) If you no longer want to receive notifications, reply to this comment with the word `STOP` > By upvoting this notification, you can help all Steemit users. Learn how [here](https://steemit.com/steemitboard/@steemitboard/http-i-cubeupload-com-7ciqeo-png)!
author | steemitboard |
---|---|
permlink | steemitboard-notify-adventuretours-20180102t035118000z |
category | infosec |
json_metadata | {"image":["https://steemitboard.com/img/notifications.png"]} |
created | 2018-01-02 03:51:18 |
last_update | 2018-01-02 03:51:18 |
depth | 1 |
children | 0 |
last_payout | 2018-01-09 03:51:18 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.000 HBD |
promoted | 0.000 HBD |
body_length | 702 |
author_reputation | 38,975,615,169,260 |
root_title | "VulnWhisper - creating actionable data from vuln scans" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 26,481,822 |
net_rshares | 572,247,600 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
adventuretours | 0 | 572,247,600 | 100% |