« Some very big words about search | Main | Sweeds in Seattle »

December 3, 2003

Santum and SPI Dynamics Web App scanner shoot-out

Starting to look at web application scanners. January 2003 - Wide Open on Port 80 - How good are Web app scanners at rooting out vulnerabilities? We test two of the leading tools head-to-head to find out. This review of the two leading ones is interesting. It leaves something to be desired though. I understand network vulnerability scanning, you have lots of standard devices in lots of places. With web apps each one is a custom app. There are logic errors. There are specific features on them like the fuzzy numbers/letters that are there to specifically thward bots from running the app. You gotta have some human intervention.

Posted by Martin at December 3, 2003 3:53 PM

Trackback Pings

TrackBack URL for this entry:
http://www.nwventurevoice.com/cgi-bin/mt-tb.cgi/888

Comments

Post a comment

Thanks for signing in, . Now you can comment. (sign out)

(If you haven't left a comment here before, you may need to be approved by the site owner before your comment will appear. Until then, it won't appear on the entry. Thanks for waiting.)


Remember me?