开发者

Open Source SQL/Code Injection Scanning Application?

I have a site that I see is getting a ton of SQL injections and Code injections per day. I use CrawlTrack to view/record/bloc开发者_StackOverflow中文版k the IPs, but now I want to do a comprehensive scan of my domain to see if I am overlooking any vulnerabilities I need to be fixing AsAP.

Does anyone know of any stand alone Mac application or browser based scanning software that would help find potential issues on a domain?


Acunetix has a free edition. Check if it is useful. Here is a OWASP XSS prevention reference. It has reusable components, cheat sheets etc.


Does your database support stored procedures? This would help prevent the SQL injection issues.

0

上一篇:

下一篇:

精彩评论

暂无评论...
验证码 换一张
取 消

最新问答

问答排行榜