Tuesday, December 29, 2009

Wapiti 2.2.0 Released

Web application vulnerability scanner

Wapiti is a vulnerability scanner for web applications. It currently search vulnerabilities like XSS, SQL and XPath injections, file inclusions, command execution, LDAP injections, CRLF injections... It use the Python programming language.

Wapiti can detect the following vulnerabilities :

File Handling Errors (Local and remote include/require, fopen, readfile...)
Database Injection (PHP/JSP/ASP SQL Injections and XPath Injections)
XSS (Cross Site Scripting) Injection
LDAP Injection
Command Execution detection (eval(), system(), passtru()...)
CRLF Injection (HTTP Response Splitting, session fixation...)

More info and Download: http://sourceforge.net/projects/wapiti

No comments: