London, United Kingdom – February 5, 2019 – Invicti, the pioneer in automated web application security software, has announced the release of Invicti Version 13. The new release comes with an improved user interface and introduces innovations such as the SmartScan engine, malware detection functionality, comprehensive network scanning, proof-of-exploit, incremental scanning, and more. This release further strengthens the leading position of Invicti on the web security market.
“Invicti has always focused on performance and accuracy and the newest release is yet another proof of this,” said Nicolas Sciberras, CTO. “You cannot find these unique features in any other product.”
![]()
Unparalleled Performance
Scanning complex web applications using traditional web vulnerability scanners may take hours, having a serious impact on production site performance and internal processes. Invicti addresses this problem by introducing even more innovations that improve scanning performance.
The SmartScan engine included with Invicti v13 prioritizes unique pages to discover more vulnerabilities early on. In most cases, Invicti SmartScan can find approximately 80 percent of vulnerabilities in the first 20 percent of the scan. The newest Invicti engine also reduces the number of requests required to find vulnerabilities, which lessens the site load during the scan.
In addition to the SmartScan engine, the newest Invicti release also introduces incremental scanning. You can choose to scan only the elements of your web application that have changed since the last full scan. On average, it shortens the process by 90 percent or more.
Comprehensive Security Coverage
With the release of Invicti v13, network scanning functionality is now available on all platforms. Web vulnerabilities and network vulnerabilities are part of the same assessment and management processes.
In addition to the previously available malicious link discovery function, the newest Invicti release also introduces web malware scanning. Invicti discovers scripts on websites and web applications, downloads them, and scans them locally using Windows Defender on Windows or ClamAV on Linux.
Further Advances in Automation
Invicti v13 introduces two new features that greatly improve automation, especially in the case of larger organizations. The vulnerability confidence level clearly indicates whether the vulnerability may need further manual confirmation. Critical vulnerabilities typically have a 100 percent confidence level, which means that they are fully verified. For most such vulnerabilities, Invicti now also provides a proof-of-exploit, such as the content of a sensitive file downloaded from the server.
The newest release also enhances the import and integration capabilities of Invicti. The scanner can now additionally import WADL, ASP.Net WebForms, and Postman files to seed the crawl. You can also export vulnerabilities to even more issue trackers: GitLab, Bugzilla, and Mantis.
Technology Improvements
With all the new advances comes an improved user interface, featuring better sorting and filtering as well as response highlighting and improved accessibility.
![]()
In addition to the above innovations and improvements, the Java AcuSensor technology now supports the Spring framework, while the DeepScan crawling engine can now directly recognize Angular 2, Vue, and React frameworks and adjust crawling to their requirements.
Invicti, the Company
Founded in 2005 to combat the alarming rise in web application attacks, Invicti is a pioneer and market leader in automated web application security technology. Invicti products are trusted globally by individual security experts, SMBs, and large organizations. It is the security provider of choice for many customers in the government, military, educational, telecommunications, banking, finance, and e-commerce sectors, including the Pentagon and Fortune 500 companies such as Nike, Disney, and Adobe.
Download this press release as PDF
Get the latest content on web security
in your inbox each week.



