Macnica

Macnica

Unauthorized access to externally connected network devices and servers and information gathering by attackers are becoming commonplace, and assets with unsupported OS, firmware, and applications installed can be a gateway for attackers. Even if maintenance is performed regularly, new vulnerabilities are reported every day, so attacks may occur before any response is made. In addition, there are cases in which a port that has been carelessly left open due to a setting error, etc., becomes an attack target or an intrusion route for attackers.

Platform diagnostics is a service that diagnoses security problems hidden in servers and networks.
Engineers who are well versed in security issues identify problems and help prevent serious incidents such as information leaks.

Main diagnostic items of platform diagnostics

item content
port scan Investigate the ports that can be connected from the outside and check if any suspicious services are running.
Check application banner Check whether the version information of the OS and running services can be obtained externally.
Check for known vulnerabilities Make sure your running services are protected against known vulnerabilities.
Check settings Check for incorrect settings for running services.
Account inspection Investigate whether a guessable account is set for common services such as FTP and SSH.
Others We will report any behavior that seems to be a bug found during the diagnosis or vulnerabilities other than the above.

Platform diagnostics overview

  • Service overview
    1. We use tools to detect known vulnerabilities that exist in servers and network devices.
    2. Manual inspection is also performed depending on the service content of each port of the server.
    3. For up to 3IP, the diagnostic period is 2-3 days.
    4. The risk level of detected vulnerabilities is divided into 5 levels (see the table below), and if a vulnerability of High or higher is detected, a bulletin will be submitted.
  • After-sales service
    1. Debriefing (optional):
      We will explain the contents of the report and the countermeasures.
    2. Inquiries:
      We will respond to Q&A by email for one month after submitting the report.
    3. Re-diagnosis:
      If it is within one month, we will re-diagnose "MIDDLE", "HIGH", and "CRITICAL". (In the case of on-site diagnosis, a separate estimate will be provided.)
    4. Breaking news correspondence:
      If a vulnerability of High or above is detected, we will notify you by e-mail as a flash report.

Deliverable image



In addition to this service, S&J offers a wide range of services, from assessment/consulting of the customer's security system to comprehensive monitoring of various devices including EDR, servers, and NW equipment, to response support in the event of a serious incident. We can support you. Please refer to each service page for details.

Inquiry/Document request

In charge of Macnica Security Service Co., Ltd.

Mon-Fri 8:45-17:30