.

[Article]-Interview: Ferruh Mavituna on Netsparker

<<

don

User avatar

Administrator
Administrator

Posts: 4226

Joined: Sun Aug 28, 2005 10:47 pm

Location: Chicago

Post Thu Jan 07, 2010 2:47 pm

[Article]-Interview: Ferruh Mavituna on Netsparker

Jason Haddix continues his fine work with another interview. If you have any questions for Mr. Mavituna, please feel free to ask them in this thread, and we'll do our best to get him to answer them personally.

Permanent link: [Article]-Interview: Ferruh Mavituna on Netsparker


Image


Review by Jason Haddix

Today we showcase a new web application scanner called Netsparker, and believe us when we say we put this app through the ringer.

There's a big distinction between testing a tool against dummy apps in a lab and using it first hand against a large environment. Luckily for us we got to do both.

Over the course of a month we ran several engagements and specifically watched Netsparker’s performance compared to other tools we normally use in the assessment process (w3af, Grendel Scan, Nikto, Wikto, Websecurify, Paros, Burp, etc). We have to say, we are very impressed. Netsparker not only caught vulnerabilities that other scanners missed but also had excellent remediation and a documentation section for most of its findings.

For injection it does a full-scale attack, testing every parameter it can spider (which it also does very well), and, although this lengthens the testing time, it also awarded us with some valuable injection findings. Netsparker is developed by Mavituna Security, and more specifically our guest, Ferruh Mavituna.



Don
CISSP, MCSE, CSTA, Security+ SME
<<

Ketchup

User avatar

Hero Member
Hero Member

Posts: 1021

Joined: Fri Jul 04, 2008 7:44 pm

Location: Philadelphia, PA

Post Fri Jan 08, 2010 12:38 am

Re: [Article]-Interview: Ferruh Mavituna on Netsparker

Jason, good work, as always.  I am wouldn't mind trying the tool out.  It's a bit pricey, but if it does what it says it could be worth a shot.  Is there a trial version for Netsparker?
~~~~~~~~~~~~~~
Ketchup

Return to /root

Who is online

Users browsing this forum: No registered users and 0 guests

.
Powered by phpBB® Forum Software © phpBB Group.
Designed by ST Software