Practical Exercise – Running a Credentialed Vulnerability Scanner
The Microsoft Baseline Security Analyzer (MBSA) is an example of a vulnerability scanner, but you must realize that there are others.
In this exercise, we are going to download the MBSA tool and run it against our local computer to look for vulnerabilities:
- Go to Google and search for the Microsoft Baseline Security Analyzer tool. You can just enter MBSA and Google will find it.
- Click on
MBSASetup-x64-EN
. The MBSA Setup wizard appears. Click Next, as shown in the following screenshot:Figure 5.4 – MBSA setup page
- Click on I accept the license agreement and then click Next:
Figure 5.5 – Accepting the agreement
- On the destination folder page, click Next.
- On the Start Installation page, click Install. Then, the Installation Progress page will appear, as follows:
Figure 5.6 – Installation progress
- Then, the setup will conclude. Click OK:
Figure 5.7 – Installation...