Information Systems Auditing

A collection of links, documents, and thoughts of a State IS auditor.

Project RF

with one comment

I created Project RF to have a reporting framework that provides consistant reports for various vulnerability scanning tools.  The project started with support for Nessus, Eeye Retina, and Nmap.  I’ve since included reporting for HP WebInpect,  AppScan AppDetective, Kismet, and GFI Languard.  This project is still in its alpha stages as I’m not a top notch web program developer.  Scan results are exported to XML which is then uploaded, parsed, and imported into a backend MySQL database.  I have found this framework very useful in generating reports for my workpapers.  I continue to work on this project between audits and hope to have it ready for easy setup for any state auditor that is interested in it.  Send me an email if you are interested in using this application.  I can possibly create a stripped down version for just Nessus and Nmap.

Upload Nessus File

Upload Nessus File

Generate Nessus Report

Generate Nessus Report

Nessus Report

Nessus Report

Written by admin

September 22nd, 2008 at 9:43 am

Posted in

One Response to 'Project RF'

Subscribe to comments with RSS or TrackBack to 'Project RF'.

  1. [...] and workpapers. Just remember to keep the original Nmap results. I’ve developed a LAMP framework to parse and load Nmap results into a database for reporting and analysis. However if you are just [...]

Leave a Reply