Revisão Acesso aberto

The approaches to quantify web application security scanners quality: a review

2018; Volume: 8; Issue: 38 Linguagem: Inglês

10.19101/ijacr.2018.838012

ISSN

2277-7970

Autores

Lim Kah Seng, Norafida Ithnin, Syed Zainudeen Mohd Said,

Tópico(s)

Advanced Malware Detection Techniques

Resumo

Automated web application penetration testing is becoming ubiquitous with the development of computer programs that capable of simulating tester activities of web application penetration testing. Computer programs like HTTrack [1] or Maltego [2]were invented to aid penetration tester in intelligent information gathering.The invented web application security scanners like Acunetix [3] scanned web applications for vulnerability assessment.In the meanwhile, exploitation tools like Metasploit and WFuzz are created to compromise web application confidentiality, integrity, and availability.The web application penetration testing methodology of [4] showed web application security scanner always has a critical role in scanning the web application for vulnerability detection.

Referência(s)