Jump to content
begood

Web App Scanners Miss Half of Vulnerabilities

Recommended Posts

Posted

mkxkdk.jpg

seek3r sends news of a recent test of six web application security scanning products, in which the scanners missed an average of 49% of the vulnerabilities known to be on the test sites. Here is a PDF of the report. The irony is that the test pitted eah scanner against the public test files of all the scanners. This reader adds, "Is it any wonder that being PCI compliant is meaningless from a security point of view? You can perform a Web app scan, check the box on your PCI audit, and still have the security posture of swiss cheese on your Web app!"

"NTOSpider found over twice as many vulnerabilities as the average competitor having a 94% accuracy rating, with Hailstorm having the second best rating of 62%, but only after extensive training by an expert. Appscan had the second best 'Point and Shoot' rating of 55% and the rest averaged 39%."

Posted (edited)

dar celelalte (in afara de acunetix) ? le are careva ? please share ! :(

Pe ce torrente cautati voi de le-ati gasit macar pe restu ca eu am cautat pe isohunt si nimic...? Ce siteuri de torrent stiti ? (Dar de aste bune nu porcarii romanesti care se chinuiesc sa imite strainii !).

Multumesc anticipat !

Edited by Krisler12

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...