Security Scanning Tools Available Out of the Box

The following security scanning tool list include tools that are available to customers out of the box; meaning that customers can use these tools in a SaaS manner without additional setup other than activating the Scenarios.

Please reach out to our Customer Success team for information about whether specific tools support running Onprem.

Activate Scenario

  1. Login to the web UI and then go to znADM > Scenarios .
  2. Locate the desired security tool Scenario tile (refer to list below)
  3. Click on the + Add Scenario button to the bottom right of the tile.
  4. The Scenario Configuration will default to the only option for each of the Scenarios except
  • NMap
  • Metasploit
  • OWASP ZAP

SCA Scanners

Bandit

Brakeman

OWASP Dependency Check

Container Scanners

Aqua Trivy

Docker Content Trust

Clair

DAST Scanners

Burp

Metasploit - see Metasploit Exploit Testing

Nikto

NMap - see Activate Scenario - NMap (OSS)

OpenVAS - Has options to host your own server but customer may leave those fields blank and use OpenVAS in a SaaS manner.

Sn1per

OWASP ZAP

Cloud Scanners

ScouteSuite