2016
DOI: 10.5120/ijca2016907794
|View full text |Cite
|
Sign up to set email alerts
|

Assessment of Web Scanner Tools

Abstract: Nowadays the security of web applications becomes a serious problem because of the impact of its vulnerability, so a previous consideration should be taken to diminish its harmful effect. One of the most important tools used to test the security of the web is web security scanner which is a tool that can be used by the penetration tester to give clear indication of the weakness by detecting the vulnerabilities of web pages like SQL injection, XSS attack. While the importance of web scanners are so obvious, but… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
2
1

Citation Types

0
6
0

Year Published

2020
2020
2023
2023

Publication Types

Select...
3
2
1

Relationship

0
6

Authors

Journals

citations
Cited by 8 publications
(6 citation statements)
references
References 1 publication
0
6
0
Order By: Relevance
“…Rawaa [39] performed an assessment of web scanner tools and evaluated the effectiveness and differences to find flaws and limitations in different web scanner tools. The evaluation of black box web application vulnerability scanners was focused on SQLI and XSS attacks due to their severity level.…”
Section: Literature Reviewmentioning
confidence: 99%
“…Rawaa [39] performed an assessment of web scanner tools and evaluated the effectiveness and differences to find flaws and limitations in different web scanner tools. The evaluation of black box web application vulnerability scanners was focused on SQLI and XSS attacks due to their severity level.…”
Section: Literature Reviewmentioning
confidence: 99%
“…Skipfish is Google's web app vulnerability detection tool [23], [24]. By performing recursive crawls and dictionarybased probes, it can generate an interactive sitemap of the target site [23], [24].…”
Section: ) Skipfishmentioning
confidence: 99%
“…Skipfish is Google's web app vulnerability detection tool [23], [24]. By performing recursive crawls and dictionarybased probes, it can generate an interactive sitemap of the target site [23], [24]. Skipfish is particularly useful in determining whether a site is vulnerable to scripting or injection attacks [25].…”
Section: ) Skipfishmentioning
confidence: 99%
“…Although the advantages of vulnerability scanners are indisputable, it remains unclear how well they perform on different types of vulnerabilities. Previous research has tried to address this question, but it typically focused on a very small set of vulnerability scanners [15,21,22], used a (custom) testbed with only a few vulnerability test cases [10,29,36], and/or concentrated on a narrow subset of the most common web vulnerabilities [2,24].…”
Section: Introductionmentioning
confidence: 99%