Consulting Licence Offer From Redseal – Security Risk Manager (SRM)

Outsmart Malicious Hackers


Redseal is launching a free offer next week for security consultants, pen testers and auditors.

Redseal develops a product called Security Risk Manager (SRM), it does the following – (non sales overview)

  1. Imports firewall and router configuration files
  2. Audits and checks them for errors, mis configurations, redundant rules, checks against best practices etc
  3. Draws a network topography map from the configs (you can move this around, save layouts, export to Visio)
  4. Builds a network blueprint of all permitted traffic flows which you can query (i.e. can traffic from internet get to my PCI servers etc)
  5. Built in “inference intelligence” auto populates what applications are running on the network and gives them asset values (you can customize and define as much as you want)
  6. Has a built in Threat Reference Library to provide vulnerability info, currently over 23,000 and updated on a weekly basis (you can also load in Nessus, Qualys and Foundstone scan data if you have it as well)
  7. Analyzes the network and security data to identify what vulnerabilities are the most important to fix based on network access and importance.
  8. Shows unique graphical ways to quickly view and drill down through huge sets of data to find the most important information.

The product has been referenced by some consultants as the first way to perform a passive pen test as it is completely unobtrusive, you just need to load in configs, no scanning required.

Redseal has launched a license for Consultants to use out in the field and to promote it they are offering security consultants and auditors free and full use of the product for 30 days. They are keen for consultants to use the product and prove out it’s capabilities and values in the field and they want to hear feedback and so if anyone would like to take us up on this offer please email consultants@redseal.net to sign up for the program, it’s quick, easy and free.

Some of the latest news is below:

Red Seal Press Releases

There is also a short white paper here.


Posted in: Countermeasures, Security Software

, , , , ,

Latest Posts:


BSQLinjector - Blind SQL Injection Tool Download BSQLinjector – Blind SQL Injection Tool Download in Ruby
BSQLinjector is an easy to use Blind SQL Injection tool in Ruby, that uses blind methods to retrieve data from SQL databases.
CCleaner Hack - Spreading Malware To Specific Tech Companies CCleaner Hack – Spreading Malware To Specific Tech Companies
The CCleaner Hack is blowing up, initially estimated to be huge, it's hit at least 700k computers & is specifically targeting 20 top tech organisations.
AWSBucketDump - AWS S3 Security Scanning Tool AWSBucketDump – AWS S3 Security Scanning Tool
AWSBucketDump is an AWS S3 Security Scanning Tool, which allows you to quickly enumerate AWS S3 buckets to look for interesting or confidential files.
nbtscan Download - NetBIOS Scanner For Windows & Linux nbtscan Download – NetBIOS Scanner For Windows & Linux
nbtscan is a command-line NetBIOS scanner for Windows that is SUPER fast, it scans for open NetBIOS nameservers on a local or remote TCP/IP network.
Equifax Data Breach - Hack Due To Missed Apache Patch Equifax Data Breach – Hack Due To Missed Apache Patch
The Equifax data breach is pretty huge with 143 million records leaked from the hack in the US alone with unknown more in Canada and the UK.
Seth - RDP Man In The Middle Attack Tool Seth – RDP Man In The Middle Attack Tool
Seth is an RDP Man In The Middle attack tool written in Python to MiTM RDP connections by attempting to downgrade the connection to extract clear text creds


Comments are closed.