Slide 45
Slide 45 text
Common Opensource DAST Tools
15/10/2023
DEVOXX MA - PREVENTING SECURITY VULNERABILITIES IN A WEB APPLICATION
ALEXIUS DIONYSIUS DIAKOGIANNIS
45
Tool
Programming
languages supported
Attack types
supported
Scanning methods Features
ZAP Wide Wide Active, passive
Scripting, automation,
extensibility
W3AF Wide Wide Active, passive
Scripting, automation,
extensibility
Nikto Limited Limited Active Limited
Intruder Wide Wide Active
Scripting, automation,
extensibility
Burp Suite
Community Edition
Wide Wide Active, passive
Scripting, automation,
extensibility
AppScan Open Wide Wide Active, passive
Scripting, automation,
extensibility
Detectify Community
Edition
Wide Wide Active, passive
Scripting, automation,
extensibility
Acunetix Community
Edition
Wide Wide Active, passive
Scripting, automation,
extensibility
Astra Pentest
Community Edition
Wide Wide Active, passive
Scripting, automation,
extensibility
EASY
Cloud
Based