Security Basics mailing list archives

RE: Vuln Scanner for Web App Source Code


From: "Lorna Alamri" <lalamri () go-integral com>
Date: Mon, 19 May 2008 15:43:53 -0500

Fortify also has a good tool. Or depending on the application and what
it is written in there are also several OpenSource tools available.
Lorna

-----Original Message-----
From: listbounce () securityfocus com [mailto:listbounce () securityfocus com]
On Behalf Of Johnny Wong
Sent: Monday, May 19, 2008 12:34 AM
To: cnanne () gmail com; security-basics () securityfocus com
Subject: Re: Vuln Scanner for Web App Source Code

For commercial tool, can try SPI dynamics. Acquired by HP some time ago.

At 12:16 PM 18-05-08, cnanne () gmail com wrote:
This might be a bit of a dumb question, but does anyone know of a 
good Vulnerability Scanner for finding faults in the actual Source 
Code of the Web App? Or can this task can only be done by hand?


Any feedback on this is highly appreciative



cheers,


PhoenixRbrth


Current thread: