
So it can be used to scan Servers, Desktops, Network devices and Phones to ensure environmental security from exploits. Nessus is very extendable by utilizing its plugins and scripting. It does this by applying 1000s checks against given environments and helps to prevent serious Data leaks. Nessus allows Administrators to scan their networks looking for Vulnerabilities that Hackers, Malware and virus could use for and exploit. Because of these plugins it makes it easier to add new functionality to Nessus. It utilizes plug-ins to handle different vulnerability scans.

The tool is free for non-enterprise use with some limitation. “ Nessus” is a proprietary vulnerability Scanner developed by Tenable. But there is a whole range of tools out there that can do it all in one shot.

We typically use tools like nmap to start our enumeration and once we identify open port and then we pick the best tool to enumerate the open port. When doing CTF (Capture the Flag) Challenges, enumeration is the key.
