Skip to content

Project sales pitch

Andres Riancho edited this page Aug 3, 2015 · 3 revisions

What is w3af?

The w3af application security scanner allows developers and system administrators to identify security flaws in their Web applications using a completely automated approach: point the scanner to the target and wait for the prioritized results to appear.

Our scanner will identify all the application inputs such as query string parameters, URL-encoded forms, and asynchronous requests and use that information to find vulnerabilities such as SQL injections and Cross-Site Scripting which are commonly exploited by hackers to gain access to your client's information.

This open source software identifies more than 200 unique vulnerabilities, which can be saved as text, XML, JSON or fully customizable HTML templates.

Main features

  • 200+ unique vulnerabilities identified
  • High link coverage: w3af is able to crawl complex applications
  • Low false positive rate reduces the time required to analyze and fix the potential vulnerabilities in your application