Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Skipfish and wapiti are quite a bit different than this. They are simply blackbox scanners that attempt to crawl a webpage and look for common issues, mostly by trial and error. This is examining the source code of an application, finding all the sinks, building a graph, and working backwards through the graph to find sources that can pass input to the vulnerable sinks.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: