Software Alternatives & Reviews

Top 4 Open Source Security Testing Tools to Test Web Application

Acunetix Netsparker Zed Attack Proxy Burp Suite SonarQube Klocwork
  1. Audit your website security and web applications for SQL injection, Cross site scripting and other...
    It discovers open ports and running services; assesses the security of routers, firewalls, switches, and load balancers; tests for weak passwords, DNS zone transfer, badly configured Proxy Servers, weak SNMP community strings and TLS/SSL ciphers, among others. It integrates with Acunetix Online to provide a comprehensive perimeter network security audit on top of the Acunetix web application audit.

    #Cyber Security #Security #Web Application Security

  2. Netsparker is a tool for scanning web sites for security vulnerabilities.
    Netsparker uniquely verifies the identified vulnerabilities proving they are real and not false positives, so you do not need to waste hours manually verifying the identified vulnerabilities once a scan is finished.

    #Security #Web Application Security #Monitoring Tools

  3. The Zed Attack Proxy (ZAP) is an easy to use integrated penetration testing tool for finding...
    Pricing:
    • Open Source

    #Web Application Security #Security #Security & Privacy

  4. Burp Suite is an integrated platform for performing security testing of web applications.
    It is a tool that is used for performing security testing of web applications. It has professional as well as community editions. With over 100 predefined vulnerability conditions it ensures the safety of application, Burp suite applies these predefined conditions to find out the vulnerabilities.

    #Security #Web Application Security #Security Monitoring 12 social mentions

  5. SonarQube, a core component of the Sonar solution, is an open source, self-managed tool that systematically helps developers and organizations deliver Clean Code.
    Pricing:
    • Open Source
    • Freemium
    • Free Trial
    • $150.0 / Annually
    Though written in Java, it can analyze over twenty different programming languages. It can easily integrate with continuous integration tools like Jenkins server, etc. The results will be populated to the SonarQube server with ‘green’ and ‘red lights’.

    #Code Analysis #Code Review #Code Coverage 1 social mentions

  6. Klocwork is a static code analysis and SAST tool for C, C++, C#, Java, and JavaScript.
    For quick identification, Klocwork highlights the issue raised ‘line of code’, cites the cause of the issue and suggests few measures to overcome the same.

    #Code Analysis #Code Coverage #Code Review

Discuss: Top 4 Open Source Security Testing Tools to Test Web Application

Log in or Post with