Wapiti icon

Wapiti For Mac

4.5/5 2
GPL   

Vulnerability scanner for web applications. #Vulnerability scanner  #Scan webpage  #Webpage scanner  #Scan  #Vulnerability  #Webpage  

Description

features

changelog

Free Download

Wapiti currently search vulnerabilities like XSS, SQL and XPath injections, file inclusions, command execution, LDAP injections, CRLF injections.

Wapiti uses the Python programming language.Wapiti allows you to audit the security of your web applications.

Wapiti performs "black-box" scans and does not study the source code of the application but scans the webpages of the deployed webapp, looking for scripts and forms where it can inject data.

Wapiti can detect the following vulnerabilities : · File Handling Errors (Local and remote include/require, fopen, readfile...) · Database Injection (PHP/JSP/ASP SQL Injections and XPath Injections) · XSS (Cross Site Scripting) Injection · LDAP Injection · Command Execution detection (eval(), system(), passtru()...) · CRLF Injection (HTTP Response Splitting, session fixation...)

Wapiti is able to differentiate punctual and permanent XSS vulnerabilities. Wapiti prints a warning everytime it founds a script allowing HTTP uploads.

A warning is also issued when a HTTP 500 code is returned (useful for ASP/IIS) Wapiti does not rely on a vulnerability database like Nikto do. Wapiti aims to discover unknown vulnerabilities in web applications.

Wapiti does not provide a GUI for the moment and you must use it from a terminal.

What's new in Wapiti 2.2.1:

  • Internationalization and translation to english and spanish when called from
  • Wapiti.
  • Ability to save a scan session and restore it later (-i)
  • Added option -b to set the scope of the scan based on the root url given as
Read the full changelog
User Comments
This enables Disqus, Inc. to process some of your data. Disqus privacy policy

Wapiti 2.2.1

add to watchlist add to download basket send us an update REPORT
  runs on:
Mac OS X (PPC & Intel)
  file size:
463 KB
  1 screenshot:
Wapiti - screenshot #1
  main category:
Internet Utilities
  developer:
  visit homepage