Penetration Testing mailing list archives

Re: out of box scanner


From: Nathan Grandbois <ngrandbois () microsolved com>
Date: Tue, 01 Dec 2009 14:24:45 -0500

John Bennett wrote:
I'm currently evaluating some commercial scanners and wanted to get a feel for others experiences with appscan/cenzic/webinspect. Any gotcha's with any of these products and can anybody recommend one over the other?

thanks,
John

------------------------------------------------------------------------
This list is sponsored by: Information Assurance Certification Review Board

Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
http://www.iacertification.org
------------------------------------------------------------------------


John,

You might want to take a look at the WASC list here:

http://projects.webappsec.org/Web-Application-Security-Scanner-List

The thread is still under discussion on the webappsec mailing list.

_nathan

--
_______________________________________________________________________
Nathan Grandbois, CISSP           ngrandbois () microsolved com
Security Analyst                  (614) 351-1237 x 212
PGP Key Available by Request
MicroSolved is security expertise you can trust!

HoneyPoint Security Server
Attackers get stung, instead of you!
http://www.microsolved.com/honeypoint



Attachment: smime.p7s
Description: S/MIME Cryptographic Signature


Current thread: