Open VAS / Greenbone
Full vulnerability scanning and management suite. Scan networks for known CVEs and misconfigurations.
Open the official app on www.greenbone.net
This tool is hosted by its maintainers. Click below to open www.greenbone.net in a new tab — it's their official demo.
Browse security tools →What's next with Open VAS / Greenbone?
Choose how you want to get started.
Use it free
Open the official tool or demo — no account needed.
Self-host it
Run the open-source version on your own infrastructure.
What is Open VAS / Greenbone?
OpenVAS / Greenbone is an open-source vulnerability management system designed to identify, prioritize, and remediate security weaknesses in IT infrastructure. Its primary purpose is to detect vulnerabilities in networks, systems, and applications before they can be exploited by attackers. Organizations, system administrators, and cybersecurity professionals use this tool to proactively secure their environments. It addresses the critical problem of unpatched vulnerabilities, which are common entry points for cyberattacks, by providing a centralized platform for continuous security monitoring and threat intelligence. The tool leverages a vast database of over 200,000 pre-defined vulnerability tests to assess risks across diverse technologies, enabling users to mitigate threats with precision. By integrating scanning, analysis, and reporting capabilities, OpenVAS / Greenbone helps reduce the risk of data breaches and operational disruptions caused by cyber threats.
How it works
OpenVAS / Greenbone is a GPL-2.0 licensed open-source project that combines vulnerability scanning, security feeds, and management tools to address cybersecurity risks. It is part of the Greenbone Network, which unifies multiple security solutions under a single brand, offering a comprehensive approach to threat detection and response. The tool's purpose is to enable organizations to proactively identify and manage vulnerabilities in their IT systems. By automating the discovery of security weaknesses, it helps users prioritize remediation efforts based on risk factors such as exploitability and business impact. OpenVAS / Greenbone excels in vulnerability scanning, using a modular architecture to execute over 200,000 pre-configured tests against targets. It supports network discovery, port scanning, and detailed analysis of software flaws, misconfigurations, and outdated dependencies. The platform also integrates with security feeds to ensure tests are updated with the latest threat intelligence.
How to use it
- 1Install the OpenVAS scanner and Greenbone Security Feed on a dedicated server or virtual machine. 2. Configure the scanner to target specific IP ranges or assets, defining scan schedules and exclusion rules. 3. Run vulnerability scans using the built-in test suite, which automatically checks for known exploits and configuration issues. 4. Analyze results in the web interface, which categorizes findings by severity and provides remediation guidance. Practical tips include regular updates to the security feed to ensure tests reflect the latest threats, using custom scan templates for specialized environments, and integrating with ticketing systems to automate remediation workflows.
What it can do
- vulnerability management scanner
Use cases
Assumptions and limitations
Assumptions
- source: https://github.com/greenbone
- license: GPL-2.0 — free to use
- privacy: Self-hosted — you control your data
Limitations
- Dual-use tool — use only with explicit authorization on systems you own or have permission to test.
- Requires advanced technical knowledge to configure and interpret scan results
- Limited real-time threat detection capabilities compared to commercial SIEM tools
- Scanning performance may degrade with large-scale or distributed networks
- Dependence on accurate asset inventory for effective vulnerability prioritization
Understanding the result
Full vulnerability scanning and management suite. Scan networks for known CVEs and misconfigurations.
Tool details
- Clearly flagged when a network request is needed.
- No account, no sign-up, and no tracking of your content.
- Powered by (MIT).
- Built with
- (https://github.com/greenbone)
- License
- MIT
- Runs locally
- No — requires a network request
- Verification
- Not yet verified
- Input
- Query
- Output
- Text
Built with https://github.com/greenbone. OpenToolVault provides the discovery and browser interface while crediting the original project maintainers.
- Built with
- License
- MIT
Open-source project
OpenToolVault is an independent directory. We are not affiliated with or endorsed by this project.
References
- / — GitHub Repository
Upstream project · GitHub
- GPL-2.0 License
Upstream project
Frequently asked
What is the difference between OpenVAS and Greenbone?
OpenVAS refers to the core vulnerability scanner and security feed, while Greenbone encompasses the broader ecosystem of tools and services, including the vulnerability management application and security intelligence platform. Together, they form a unified solution for comprehensive cybersecurity management.
How does the security feed work?
The Greenbone Security Feed is a continuously updated database of vulnerability tests hosted on a central server. OpenVAS clients periodically synchronize with this feed to download the latest tests, ensuring scans reflect the most recent threat intelligence. Users can also contribute custom tests to the community-driven feed.
How do I perform a targeted scan?
Navigate to the 'Scan Configuration' section in the web interface, select 'New Scan', and define parameters such as target IP ranges, scan schedule, and test selection. Choose advanced options like port ranges or specific vulnerability types to focus the scan. Save the configuration and initiate the scan from the dashboard.
How does OpenVAS compare to commercial tools like Nessus or Qualys?
OpenVAS / Greenbone offers similar core functionality to Nessus and Qualys but with an open-source model, allowing customization and cost-effective deployment. Unlike Qualys, it lacks cloud-native integration and advanced compliance modules. Nessus provides more granular exploit simulation, while OpenVAS excels in community-driven test development and scalability for on-premises environments.
How do I resolve a 'Connection refused' error during scanning?
Verify that the target host is reachable via ping and port scanning. Check firewall rules to ensure the scanner has permission to access the target ports. Confirm that the OpenVAS server's IP address is correctly configured in the scan settings. If the issue persists, review the server logs for network-related error codes and adjust routing or security policies accordingly.