As web sites grow ever more complex and users spend ever more time online, cybercriminals are stepping up their game to focus on exploiting legitimate sites – and the trust placed in those sites by users. Techniques such as cross-site scripting (XSS) and SQL injection attacks enable hackers to take control of web sites “behind the scenes,” redirecting users without their knowledge in order to steal data or spread malware.
"Web sites are often vulnerable to attack, and oftentimes sites are compromised without the knowledge of the web site owners or its users," said Scott Crawford, research director for EMA. "While organizations want to ensure security, many lack the resources to identify possible security issues, or they do not know where to start. Using a free service like Qualys FreeScan can help organizations proactively gain visibility into possible issues so they can take the steps needed to protect their web sites and online visitors."
Powered by Qualys’ cloud-based platform that hosts the QualysGuard' security and compliance suite of applications, FreeScan is an easy-to-use service that allows customers to perform comprehensive scans on web sites or publicly facing IP addresses. The free service scans for:
Network perimeter vulnerabilities Web application vulnerabilities Web site malware infections SSL certificate validity
The scan results also provide guidance on remediation to fix identified vulnerabilities and remove malware infections.
“In our continuous effort to make security and compliance easy and affordable, we’re pleased to expand our popular FreeScan service so smaller businesses can protect their internet presence as larger enterprises do,” said Philippe Courtot, chairman and CEO for Qualys.
Availability of Qualys FreeScan Qualys FreeScan is available now to users who register at http://qualys.com/audit. FreeScan allows each customer to run up to five scans on their web sites or publicly facing IP addresses at no cost.
About Qualys
Qualys, Inc. is the leading provider of cloud-based information security and compliance solutions with 5,500+ customers in 85 countries, including 50 of the Forbes Global 100. The Qualys cloud-based platform and integrated suite of applications helps businesses simplify security operations and lower the cost of compliance, delivering critical security intelligence on demand and automating the full spectrum of auditing, compliance and protection for IT systems and web applications. Founded in 1999, Qualys has established strategic partnerships with leading managed service providers and consulting organizations including BT, Dell SecureWorks, Fujitsu, IBM, NTT, Symantec, Verizon, and Wipro. The company is also a founding member of the Cloud Security Alliance (CSA).
For more information, please visit www.qualys.com.
| To upload an avatar photo, first complete your Disqus profile. | View the list of supported HTML tags you can use to style comments. | Please read our commenting policy. |
Small Businesses, Big Losses: How SMBs Can Fight Cybercrime
Small and midsize businesses are falling prey to cyberattacks that cost them sensitive data, productivity and corporate accounts cleaned out by sophisticated banking Trojans. SMBs are typically on the hook for these losses and lack effective means to prevent them. In this report, we explain what makes these threats so menacing, and share best practices to defend against them.
Five Security Flaws, Five Security Fixes For Small And Midsize Companies
Take a sneak peek at data from the Dark Reading/InformationWeek 2011 Strategic Security Survey, with a focus on the five biggest problems faced by small and midmarket companies. You?ll get a look at key security practices and processes for managing the complexity of security; enforcing policies; assessing risk; preventing data breaches; and managing scarce IT resources.
SMBs in the Crosshairs: Understanding the Threats, Defending the Business
Cybercriminals are not only exploiting small and midsize businesses -- they're targeting them. While thefts of hundreds of thousands or even millions of credit card numbers and personal information records make headlines, many small companies' accounts have been cleaned out. In this Dark Reading Tech Center report, we identify how SMBs are exploited, where their security fails and how they can shore up their defenses.
Other reports from the SMB Security Tech Center:
MORE NEWSFEED >>>