Penetration Testing mailing list archives

Re: out of box scanner


From: "Nathan Grandbois" <ngrandbois () microsolved com>
Date: Fri, 4 Dec 2009 18:44:57 +0100

John Bennett wrote:
I'm currently evaluating some commercial scanners and wanted to get a 
feel for others experiences with appscan/cenzic/webinspect.  Any 
gotcha's with any of these products and can anybody recommend one over

the other?

thanks,
John


------------------------------------------------------------------------
This list is sponsored by: Information Assurance Certification Review
Board

Prove to peers and potential employers without a doubt that you can 
actually do a proper penetration test. IACRB CPT and CEPT certs
require 
a full practical examination in order to become certified.
http://www.iacertification.org

------------------------------------------------------------------------


John,

You might want to take a look at the WASC list here:

http://projects.webappsec.org/Web-Application-Security-Scanner-List

The thread is still under discussion on the webappsec mailing list.

_nathan

-- 
_______________________________________________________________________
Nathan Grandbois, CISSP           ngrandbois () microsolved com
Security Analyst                  (614) 351-1237 x 212
PGP Key Available by Request
MicroSolved is security expertise you can trust!

HoneyPoint Security Server
Attackers get stung, instead of you!
http://www.microsolved.com/honeypoint





------------------------------------------------------------------------
This list is sponsored by: Information Assurance Certification Review Board

Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT 
and CEPT certs require a full practical examination in order to become certified. 

http://www.iacertification.org
------------------------------------------------------------------------


Current thread: