When creating and maintaining a web application, it is so hard to fully make a manual security test as there are lots of things to check for. And, many different methods exist for exploiting apps.

Netsparker LogoNetsparker is a professional yet user-friendly web application security scanner (runs on Windows OS) which makes it easy for developers of all levels to search and find any flaws in apps.

The application has a simple and intuitive user interface where you can start scanning a web app almost instantly.

Netsparker

But, this simplicity doesn't mean that the application is simple. Rather, it hosts an advanced pack of scanning technologies which analyses the apps deeply. It has full JavaScript/Ajax support, can successfully keep working when authentication is needed (once the auth info is supplied).

Best of all, Netsparker is false-positive free. If it tells that there is a vulnerability than there really is one.

In case you are planning to use it regularly and integrate it into your development environment, it has a command-line interface for easily automating and scheduling tasks.

It is a pretty flexible tool as you can choose what pages/parts of a web app to scan and/or go non-automated but manually. Also, we can customize and/or enable/disable the attacking methods used.

Netsparker Settings

Once a scan is completed, Netsparker produces a report which includes a summary of all the detected vulnerabilities, together with links to additional actionable detail, such as the impact and the remedy of the vulnerability. These reports can also be customized using the Reports API provided.

How to join the giveaway?

In order to get a chance to win the Pro Edition License, just tweet with the #wrdnetsparker hashtag and link back to this post (click to tweet easily).

The winner will be selected randomly from the tweeters 1 week later (9 October 2012).

Good luck to all.

The winner

Here is the winner of Netsparker Pro Edition License: 

  • @themergency

Congratulations and thanks to everyone for joining.

WebResourcesDepot Feed