Acunetix 7 makes web application security checking easier and more cost effective
September 1, 2010 – 1:55 pm | No Comment

New scanning engine with improved vulnerability detection AND verification makes finding and fixing security issues in web applications easier.
London, 1st September 2010 – Acunetix, a market leader in web application security scanning technology, today announced …

Read the full story »
releases

Acunetix Web Vulnerability Scanner Product Releases

docs & faq

Acunetix technical documentation how to and FAQ

news

Acunetix Company and Web Security news, & Press Releases

events

Acunetix Webinars, Events and Training around the world

web security zone

Everything you need to know about Web Security

Subdomain Scanner
August 9, 2010 – 6:43 pm | No Comment
Subdomain Scanner

The Subdomain Scanner in Acunetix WVS scans a top-level domain to discover subdomains configured in its hierarchy, by using the target domain’s DNS server, or any other DNS server specified by the user.  While scanning, …

Target Finder tool
August 9, 2010 – 6:43 pm | No Comment
Target Finder tool

The Target Finder tool in Acunetix WVS is a port scanner which can be used to discover running web servers on a given IP or within a specified range of IP’s.  The list of ports …

Getting developers on board with security – once and for all
August 4, 2010 – 8:25 pm | One Comment
Getting developers on board with security – once and for all

Making Web application security work is more than simply telling developers they need to write better code. We can scream “Write better code!” and “Integrate security into the application lifecycle!” at developers until end of …

Discovered XSS on Facebook can lead to account hijack
July 28, 2010 – 7:59 pm | 2 Comments
Discovered XSS on Facebook can lead to account hijack

Facebook rates as the second most popular website on the internet with 400 million active users. When such a website has common web application security flaws, they are going to be abused for one’s gain. …

Web security oversights: Don’t overlook the “small” stuff
July 14, 2010 – 7:41 pm | 2 Comments
Web security oversights: Don’t overlook the “small” stuff

I was reviewing the most recent SANS @RISK Consensus Security Vulnerability Alert and it reminded me of how easy it is to get caught up in the big stuff and overlook the seemingly innocuous when …

Dangerous XSS vulnerability found on YouTube – the vulnerability explained
July 6, 2010 – 2:44 am | 2 Comments
Dangerous XSS vulnerability found on YouTube – the vulnerability explained

On the 4th of July 2010 YouTube users began complaining that their videos had been hijacked, the comments section of their videos seemed to be most severely affected, many complained that old comments vanished and new comments could not be added. Others reported that offensive messages were popping up on their screen or scrolling horizontally in large fonts and striking colors. Some users also seemed to suggest that there were experiencing page redirects, often to sites promoting pornographic content.

Acunetix WVS takes first place in black box web vulnerability scanners comparison
June 29, 2010 – 8:04 pm | One Comment
Acunetix WVS takes first place in black box web vulnerability scanners comparison

Acunetix Web Vulnerability Scanner placed first in a paper released by Adam Doup´e, Marco Cova, and Giovanni Vigna from the University of California, Santa Barbara.  In the paper “Why Johnny Can’t Pentest: An Analysis of …

OWASP AppSec US 2010, California
June 21, 2010 – 8:11 pm | No Comment
OWASP AppSec US 2010, California

Acunetix will be exhibiting at the OWASP AppSec US 2010 in California.  The event will take place between 7th and 10th of September 2010.  The event will be held at UC Irvine Conference Center, in …

In-depth analysis of a PHP attack that lead to Apple information disclosure
June 17, 2010 – 9:41 pm | 7 Comments
In-depth analysis of a PHP attack that lead to Apple information disclosure

Recently over 100,000 Apple customers were affected by an information gathering attack on the AT&T website. Security experts blame this breach on “poorly designed software”. An analysis of the attack reveals that the hackers did indeed use a classic attack, in fact…

Seven Signs You’re Not Ready to Run a Web Vulnerability Scan
June 16, 2010 – 9:08 pm | 6 Comments
Seven Signs You’re Not Ready to Run a Web Vulnerability Scan

Looking to hop aboard the Web vulnerability scanning bandwagon to see just how vulnerable your Web site or application really is? Well, not so fast. Here are some signs you’re not ready to begin just …