Friday, March 19, 2010
Skipfish - web application security scanner
A fully automated, active web application security reconnaissance tool
Skipfish is an active web application security reconnaissance tool. It prepares an interactive sitemap for the targeted site by carrying out a recursive crawl and dictionary-based probes. The resulting map is then annotated with the output from a number of active (but hopefully non-disruptive) security checks. The final report generated by the tool is meant to serve as a foundation for professional web application security assessments.
More info and download: http://code.google.com/p/skipfish