Pointers to Free Web Vulnerability Scanners for Blackbox testing

From: rajivvishwa@gmail.com
Date: Thu Dec 06 2007 - 22:22:07 EST


('binary' encoding is not supported, stored as-is) Hi Guys,

I've been assigned to a project in which i'm asked to get a report on vulnerabilities present in a website hosted by my client. I'm new to blackbox testing on web applications. The duration of the project is 1.5 months. Can anyone comment on the following points
1. What are the important things to remember while doing blackbox web app testing?
2. Suggest some best free tools which are available to perform the test?
3. Where do i find the recommendation in case the tools reports various vulns in the site?
4. What is the traffic generated on the site due to the test?

Any suggestions would be appreciated.

Regards,
Rajiv,
Security Team

------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:58:14 EDT