Skip to main content

OPENVAS

Full-featured vulnerability scanner for identifying security flaws, missing patches, and weak configs across network hosts.

Technical Architecture & Overview

OpenVAS (Open Vulnerability Assessment Scanner) is the open-source vulnerability scanner maintained by Greenbone. Greenbone has rebranded its products under the OPENVAS brand, and the scanner remains actively developed with releases through 2026. It performs unauthenticated and authenticated network scanning against hosts and infrastructure, using a daily-updated feed of Network Vulnerability Tests (NVTs) to detect known vulnerabilities and misconfigurations.

Targeted Technical Use Cases

Comprehensive network vulnerability scanning and compliance auditing across enterprise infrastructure.

Evaluation & Trade-offs

Core Strengths

  • +The most widely deployed open-source vulnerability management system.
  • +Supports both unauthenticated and authenticated scanning with credential-based checks.
  • +Daily-updated vulnerability test feed from Greenbone Community.

Trade-Offs & Limitations

  • -Scanner runs on Linux only; the web frontend (Greenbone Vulnerability Management) requires separate setup.
  • -Enterprise feed features require a paid Greenbone Enterprise subscription.

Defensive Security Application

Continuous vulnerability assessment of network infrastructure and verification of patch management effectiveness.

Frequently Asked Questions

What is OPENVAS?

OpenVAS (Open Vulnerability Assessment Scanner) is the open-source vulnerability scanner maintained by Greenbone. Greenbone has rebranded its products under the OPENVAS brand, and the scanner remains actively developed with releases through 2026. It performs unauthenticated and authenticated network scanning against hosts and infrastructure, using a daily-updated feed of Network Vulnerability Tests (NVTs) to detect known vulnerabilities and misconfigurations.

What is OPENVAS used for?

Comprehensive network vulnerability scanning and compliance auditing across enterprise infrastructure.

What are the strengths of OPENVAS?
  • +The most widely deployed open-source vulnerability management system.
  • +Supports both unauthenticated and authenticated scanning with credential-based checks.
  • +Daily-updated vulnerability test feed from Greenbone Community.
What are the limitations of OPENVAS?
  • +Scanner runs on Linux only; the web frontend (Greenbone Vulnerability Management) requires separate setup.
  • +Enterprise feed features require a paid Greenbone Enterprise subscription.
How is OPENVAS used defensively?

Continuous vulnerability assessment of network infrastructure and verification of patch management effectiveness.