External Intrusion Scan

Monitoring from 63 locations world wide
Trusted by
- Fiat - Wikimedia
- Twitter - ING
- Symantec - Automattic
- Zappos - Virgin America
As seen on
- TechCrunch - Mashable
- Read Write Web - The Next Web
- The Guardian - PC Mag
- GiGaOm - CI
WatchMouse advantages
WatchMouse's Vulnerability Scanning provides the following unique advantages:
- Pay for what you need and adjust your settings at any time
- Immediate results via an outsourced solution - no software installation or hardware purchase needed
- Peace of mind that your website and servers are being scanned against an expert database of 30,000+ known vulnerabilities
- Access to an Industry Leading Customer Console to check results, leave comments, adjust scans, set alerts, and view full details
- Routine, professional scanning from the hacker's perspective, external to your organisation
- Real-time e-mail, SMS & pager alerts when severe vulnerabilities are found
- Confidence that your scanning is outsourced to industry experts so you don't need expensive in-house resources
News
Did you know? Hackers probe your servers for vulnerabilities between 5 and 170 times per week (2007-10-29)
Test your site now: Free 10 day / 10 scan trial
With a dramatic rise in malicious attacks, it is now critical to test your websites and servers for security vulnerabilities. Having the latest firewalls and Intrusion Detection Systems will not protect your organization if they (or the services behind it) are not kept up-to-date and configured correctly.
This means that verifying the security of your systems is not something you can do just once, nor should you check this just every now-and-then. New vulnerabilities are identified every day, exploits become available soon after it, and every change in your systems' configurations, however small, may open up new vulnerabilities. Having external intrusion scaned last week does not imply your systems are fine today!
The WatchMouse Periodic Vulnerability Scan is an affordable way to routinely check your company’s security exposure. Utilizing the most up-to-date database of known vulnerabilities, WatchMouse’s identifies any security external intrusion scans and provides you with the peace-of-mind that your web applications are being scrutinized from the perspective of a possible attacker.
Characteristics
WatchMouse offers Periodic Vulnerability Scanning with an outside - external intrusion scan's - view, with the following characteristics:
- Currently over 20,000 vulnerabilities are checked. Checks for new vulnerabilities are added on a daily basis.
- The frequency and the intensity of a scan can be tailored to your policies, and implemented immediately on our self-service website.
- Severe vulnerabilities can, depending on your preferences, initiate SMS (text) or paging alerts, giving you, or your webmasters, the opportunity to react quickly in case of new vulnerabilities.
- Extensive reporting is available for each scan, including pointers on how to fix vulnerabilities.
- WatchMouse's unique Vulnerability Scan Customer Console allows you to manage subsequent scans by inspecting differential reports and open issues, declaring vulnerabilities fixed, adding operator comments, etc.
Try now: Free 10 day trial!
A Boy Joins the Mouse! - Bringing transaction monitoring to your site (2008-04-02)
Now you can test transactional behavior of web applications using WatchMouse's global infrastructure.
WatchMouse is pleased to announce a partnership with Badboy Software which brings you exciting new functionality.
The Badboy tool is designed to help you test, develop and build web based applications. The powerful tool aids in the testing and development of complex dynamic applications and contains dozens of features including a simple yet comprehensive capture/replay interface, load testing support, detailed reports, graphs etc.
Now, via a partnership with Badboy Software, you can professionally record complex web transaction scripts and then automatically and external intrusion scanally run them from WatchMouse's global infrastructure of 25+ checkpoints. Having run the Badboy script, you'll receive detailed information about the end-to-end behaviour of your web applications. This new functionality enables you to monitor these transactions on your site and know how your customers experience them when they access your site from locations all around the world.
To find out more about this new functionality and sign up for a free trial visit: Web application scripting.
Happy testing!
Mark Pors
CTO
BadBoy Software updates scripting recorder to improve WatchMouse's Functional testing service (2009-01-07)
The WatchMouse Functional testing service allows you to define multi-step tests through a website and replay them external intrusion scanally from the WatchMouse monitoring stations. This goes beyond just monitoring site performance and uptime, it allows you to verify that your web applications and back end systems really work.
More information on this service can be found on the Transaction Monitoring & Web Application Testing page.
In a co-operation with BadBoy software, who provide a tailored version of their recoder software which allows you to upload the resulting script directly into your WatchMouse dashboard.
Feedback from our "Functional testing" customers has lead to several essential improvements to the BadBoy recorder. This improved version has now been released and we recommend all our customers to upgrade to this version.
The new - WatchMouse specific - version can be downloaded here:
http://www.badboy.com.au/versions/BadboyInstaller-2.0-latest_wm.exe
The most important changes are:
CHANGES IN BADBOY 2.0.7 #1097: Multipart Forms Incorrectly export Parameters to JMeter Encoded causing Double Encoding #1087: Use Follow-Redirect Option in JMeter for More Reliable Export Playback #1086: Export Referer and Other Default Headers to JMeter #1085: Assertions placed as Children of Requests not Exported to JMeter CHANGES IN BADBOY 2.0.6.1 #1075: Security Update (MS08-052 - Critical)
The full release notes can be found here: http://badboy.com.au/versions/ReleaseNotes-2.0.7.txt
Press releases
LB Icon chooses WatchMouse for independent website monitoring (2005-01-31)
Customer websites verified from the visitors' perspective
LB Icon and WatchMouse have signed a contract for the continuous monitoring of the websites and services of LB Icons' customers. Using the WatchMouse services, LB Icon expects to raise its service level even higher.
The Application Management & Hosting Services (AM&HS) group of LB Icon maintains the administration and management of servers and applications of a large number of (international) clients. This makes AM&HS responsible for the performance and availability of the websites and Internet applications.
Using the WatchMouse services, AM&HS will instantly be aware of upcoming and/or acute incidents related to the websites of its clients, and can, as a result, resolve problems in a short time frame.
The websites and their functionality are checked for accessibility, speed and conformance from different locations around the world. Because the websites are checked in the same way that visitors are experiencing them, incidents will be detected at an early stage. Also, using WatchMouse's objective external intrusion external intrusion scanal reports, it is possible to see if the performance is in accordance with the agreed service levels (SLAs).
Eveline Aendekerk, MD a.i.: "The door of a shop should never be jammed, websites and the functionality on those sites should simply be accessible and available. Our clients should be able to rely on this completely, so they can focus on their primary business processes, such as communication, interaction and sales.
We chose WatchMouse because of their expertise, and also because of the simplicity and user-friendliness of their system and services".
Stan P. van de Burgt, one of the founders of WatchMouse: "I find it a powerful gesture that LB Icon doesn't just monitor the websites of their clients, but that they selected an external party for this, and on top of that give their clients access to the results. Many companies where the website plays an essential role in business, don't have any awareness of this. They have no idea of the risks and the resulting damage, until the day comes that things actually go wrong"
About Lost Boys
For 11 years Lost Boys has been a major service provider in the area of (mobile) Internet. Lost Boys offers a combination of strategy, design, technical development, implementation, application management and hosting of Internet- and mobile solutions. The Amsterdam based corporation is part of the Lost Boys/IconMedialab Group and is listed on the Stockholm Stock Exchange and Euronext Amsterdam. Lost Boys operates with 600 employees in 7 countries, both in Europe and the United States.
http://www.lostboys.nl/
http://iconmedialab.com/
About WatchMouse
WatchMouse is a service of RoundZero. Since 2001, WatchMouse has been checking Internet sites and e-commerce applications of major companies all over the world. The WatchMouse services are available in 8 languages and analysis is performed through its worldwide monitoring network at different locations and networks. WatchMouse has thousands of users in more than 70 countries.
http://www.watchmouse.com/
Rapidly growing WatchMouse wins Deloitte’s Rising Star award (2005-09-23)
WatchMouse is one of the three winners of Deloitte’s Rising Star award. This award is presented annually to rapidly expanding technology companies less than five years old. WatchMouse has been active worldwide for three years in the area of site and server monitoring. With 16 monitoring stations throughout the world, WatchMouse monitors the availability of customers’ websites, immediately sounding the alarm in the event of problems.
The Rising Stars are presented as part of the Deloitte Technology Fast 50 ceremony, the fifty most rapidly expanding technology businesses. The Rising Stars have the potential to lead the Technology Fast 50 in the near future. Stan van de Burgt (42), Niels Eijsbroek (40) and Mark Pors (38) first came up with the idea for WatchMouse in 2001. The concept was as unique as it was clear: to monitor the availability of sites and servers by constantly simulating web traffic. If a site is not responding or an error is found, the customer is notified immediately by SMS, pager, IM or e-mail. From the moment the concept went 'live', in 2002, the pace has been frenetic: turnover doubled each year. Web sites are now monitored from sixteen monitoring stations worldwide 24 hours a day, seven days a week.
The WatchMouse application is entirely web-based: customers do not have to install software or hardware at their site, and the application excels in its self-service aspects while staying easy to use. This allows WatchMouse to operate with a small core of permanent employees, supplemented by external support. Prospective customers can specify their requirements in detail on the WatchMouse site. A range of starter packages is available, priced from € 17.50 per month up to € 450 per month. 400 paying customers in 40 countries worldwide now make use of WatchMouse’s services. These include hosting companies, government bodies, and companies such as LB Icon, Scania, Siemens, Orange, ING, GeoTrust, Citibank, and Postbank.
Self-service as a success factor
Mark Pors, Chief Technology Officer, says he was “pleasantly surprised by the award”. “I am very happy that the jury shares our vision of self-service and our market approach." Pors sees WatchMouse as “the right initiative at the right moment. Companies are increasingly looking to outsource non-core tasks. However, they want to be able to guide and control this themselves and from their own workplace. Web-based services make this possible." Stan van de Burgt, CEO, sees the simplicity of the WatchMouse site and the various languages in which it is available as the major success factors. "Monitoring websites was an idea that already existed in essence, but had not been worked out in this form. We are geared tightly to 'self service', whereby customers can set up everything themselves and retain total control. Which also means we are able to offer the service at a more attractive price than other players in the market.”
The Rising Star awards were presented on Thursday, 22 September.
WatchMouse
WatchMouse assesses your website and e-commerce applications just like your customers experience them. The checks are carried out from 16 monitoring stations worldwide, and recorded in regular reports. In the event of errors or availability problems, the right people within your organisation will be alerted.
WatchMouse and Domeny.pl join forces in the Polish market (2005-11-24)
Polish websites verified from the visitors' perspective
Kraków, Poland, 2005-11-08 -- WatchMouse and Domeny signed a reseller and marketing agreement today, joining forces in bringing site monitoring services to the Polish market.
Using the WatchMouse services, companies will instantly be aware of upcoming and/or acute incidents related to its web sites of their clients, and can, as a result, resolve problems in a short time frame.
The websites and their functionality are checked for availability, speed, and conformance from different locations around the world, now including Poland. Because the websites are checked in the same way that visitors are experiencing them, incidents will be detected at an early stage. Also, using WatchMouse's objective external intrusion external intrusion scanal reports, it is possible for companies to see if the performance is in accordance with the agreed service levels (SLAs).
WatchMouse extends its network of monitoring stations with a checkpoint in Kraków, hosted by Domeny.pl. The total number of checkpoints is now 17. Domeny.pl also provides the Polish language version of the WatchMouse site and local customer care.
Stan P. van de Burgt, CEO of WatchMouse: "I'm very happy with this deal. The Polish e-service industry is obviously booming, and this results in higher awareness of the issues involved with running web applications that should be available around the clock."
Arkadiusz Szczurowski, CEO of Domeny.pl "We know that WatchMouse products are one of the best in the World. So we decided to co-operate with the company, and we take pride in it. We expect this co-operation to bring both WatchMouse and our business a lot of advantages and satisfaction. Domeny.pl wants to lead WatchMouse monitoring service on Polish market and offer it for business leaders. This will be a great innovation in Poland and also success. In our view, site monitoring is important, because stability, performance, and high availability of the web sites is one of the basic value in all branches of business, both e-business and other business."
"There are about 4 million companies in Poland. We want to direct the offer to the most important on Polish market. We think that the WatchMouse service is a must-have for about 5-10 percent of all business owners."
About Domeny.pl
Domeny.pl was founded in 1997 and is now providing Internet services to about 10.000 business customers with products ranging from Internet domains and hosting services (virtual and dedicated servers), SSL certificates and other products dealing with internet security. The company's slogan is: We're Trusted by the Best. Among its clients are the biggest and the best known Polish and international companies.
About WatchMouse
Companies can easily monitor their own Internet sites using WatchMouse's monitoring service. WatchMouse has been monitoring Internet sites and e-commerce applications for companies throughout the world since 2002. WatchMouse has thousands of customers in more than 70 countries. The services supplied by WatchMouse are available in nine languages, and analyses are performed from various locations and over numerous networks, using a world-wide monitoring network.
In October 2005, WatchMouse was voted a Deloitte Rising Star in the Netherlands, as part of the Fast 50 awards the list of the 50 fastest growing technology companies.
WatchMouse and Badboy Software announce partnership (2008-04-03)
Partnership brings easy website transaction monitoring
WatchMouse is pleased to announce a partnership with Australia's Badboy Software. The partnership combines the immensely popular Badboy scripting tool with WatchMouse's market leading website performance monitoring, enabling customers to record complex transaction scripts and run them using a global infrastructure.
Owner and founder of Badboy Software, Simon Sadedin says, "With Badboy Software's in-depth experience in functional testing and WatchMouse's extensive infrastructure, technology and know-how for running enterprise grade monitoring solutions, we have a unique opportunity for collaboration."
The powerful Badboy scripting tool enables customers to professionally record all the actions involved in a web transaction. Designed to aid in the testing and development of complex dynamic applications, the Badboy tool contains dozens of features including a simple yet comprehensive capture/replay interface, load testing support, detailed reports, graphs etc.
WatchMouse CTO, Mark Pors explains, "Having integrated with Badboy, our customers can now upload their Badboy scripts directly into their WatchMouse console. Scripts can then be automatically and external intrusion external intrusion scanally run from WatchMouse's global infrastructure of 25+ checkpoints. This new functionality enables our customers to monitor their web applications 24/7 and know how their site behaves when customers access it from locations all around the world."
As a global leader in website performance monitoring, WatchMouse provides many of the world's largest companies with independent verifications of their website performance. With immediate results, automated alerting, simple set up and flexible subscriptions, WatchMouse offers the features, control and quality of service essential for today's online business.
The partnership between WatchMouse and Badboy Software provides customers with a market first: global, easy, powerful, web application testing.
To find out more about this new functionality and sign up for a free trial visit: http://www.watchmouse.com/scripting.php
Mark Pors
CTO
WatchMouse
http://www.watchmouse.com/
Testimonials
WatchMouse Periodic Vulnerability Scanning has enabled us... (2010-01-13)
WatchMouse Periodic Vulnerability Scanning has enabled us to overcome the time consuming task of managing monitoring internally. The removal of all duplicate findings and neat presentation in the WatchMouse Customer Console further reduces the time Lectric Webservices has to spend on maintaining secure systems.General Manager, LECTRIC Webservices
Columns
Flu Jab Your Website Against The Pandemic: 6,000 Infected Webpages Per Day! (2008-02-18)
The respected IT news website, The Register reports that every 14 seconds a web page is infected, which amounts to 6,000 infected web pages per day. Four out of five of these infections come from innocent companies and individuals who are oblivious to their site being hacked and subsequently used for hosting the malware of virus writers. The Register further reports that in the past viruses were spread using infected e-mail. Nowadays, however, the favoured virus distribution methods are downloads from compromised sites. As a result of these booby-trapped sites malware is present on at least one in every ten web pages.
WatchMouse's Periodic Vulnerability Scanning offers your website the flu jab against this virus pandemic. WatchMouse's Periodic Vulnerability Scanning is an affordable way to routinely check you company's security exposure and eliminate the risks of manual audits. Utilizing the most up-to-date database of known vulnerabilities, WatchMouse identifies any security risks and provides you with peace of mind that your software applications are being external intrusion scanned from the perspective of a hacker, external to your organization.
To ensure your website and servers are checked for the latest issues WatchMouse's Periodic Vulnerability Scanning performs over 20,000 checks for known vulnerability and security exposures; using a database which is updated daily by multiple accredited organizations including CVE (funded by the US government) and Bugtraq. Following the detection of any severe issues, automated, real-time email, SMS and pager alerts give your business the chance to react quickly. Scans can be scheduled during low usage or maintenance hours and set at an intensity and frequency suited to your business needs and budget.
To obtain a free Periodic Vulnerability Scanning trial visit: www.watchmouse.com/vulnerability_external intrusion scan_trial.php
The Register's article was published on 23.01.08 can be viewed at: www.theregister.co.uk/2008/01/23/booby_trapped_web_botnet_menace/
Security news
Mozilla Firefox/Thunderbird Double Frame Construction Memory Corruption Vulnerabilities (2009-07-24)
Mozilla Firefox and Thunderbird are prone to multiple remote memory-corruption vulnerabilities.An attacker can exploit these issues to corrupt memory on the external intrusion scan computer and run arbitrary code in the context of the user running the external intrusion scan application. Failed exploit attempts will cause denial-of-service conditions.
These vulnerabilities were previously covered in BID 35758 (Mozilla Firefox MFSA 2009-34, -35, -36, -37, -39, -40 Multiple Vulnerabilities) but have been assigned this record to better document them.
IBM Tivoli Identity Manager Session Fixation Vulnerability (2009-07-24)
IBM Tivoli Identity Manager is prone to a session-fixation vulnerability.Attackers can exploit this issue to hijack a user's session and gain unauthorized access to the external intrusion scan application.
Tivoli Identity Manager 5.0 is external intrusion scan.
Mozilla Firefox/Thunderbird JavaScript Engine Memory Corruption Vulnerabilities (2009-07-24)
Mozilla Firefox and Thunderbird are prone to multiple remote memory-corruption vulnerabilities that affect the JavaScript engine.An attacker can exploit these issues to corrupt memory on the external intrusion scan computer and run arbitrary code in the context of the user running the external intrusion scan application. Failed exploit attempts will cause denial-of-service conditions.
These vulnerabilities were previously covered in BID 35758 (Mozilla Firefox MFSA 2009-34, -35, -36, -37, -39, -40 Multiple Vulnerabilities) but have been assigned this record to better document the issues.
RaidenHTTPD Cross Site Scripting and Local File Include Vulnerabilities (2009-07-24)
RaidenHTTPD is prone to local file-include and cross-site scripting vulnerabilities because the application fails to properly sanitize user-supplied input. These issues affect the WebAdmin component.An attacker may leverage the cross-site scripting issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the external intrusion scan site. This may allow the attacker to steal cookie-based authentication credentials and to launch other attacks.
Exploiting the local file-include issue allows remote attackers to view and subsequently execute local files within the context of the webserver process.
RaidenHTTPD 2.0 build 26 and prior versions are external intrusion scan.
PowerDNS Recurser Buffer Overflow Vulnerability (2010-01-09)
PowerDNS is prone to a remote buffer-overflow vulnerability because it fails to properly bounds-check user-supplied input before copying it into a fixed-length buffer.Successfully exploiting this issue allows a remote attacker to execute arbitrary code with superuser privileges, resulting in a complete compromise of the external intrusion scan computer. Failed exploits will cause a denial of service.

