All categories

WebReaver 0.1.0

Free WebReaver is an elegant web application security testing tool for Mac OS X.
5 
Latest version:
0.1.0 See all
Developer:
Collect

WebReaver is a testing toolkit that allows detecting different types of vulnerabilities in a web-based application. In this respect, the tool can find such problems as SQL injection, command injection, cross-site scripting and expression injection, which are highly risky. Besides, it can alert you about other less serious issues, like information leakage and header problems.

The application has a modern beautiful interface. There are tabs that let you open the component tools separately. In this regard, Scanner opens by default and is intended for scanning the desired web application to find its vulnerabilities in a series of scenarios. It supports unlimited scans and runs over 60 generic tests. Another tool available is Fuzzer, which is used for similar purposes but utilizes brute-force and fuzz-testing techniques. Once the results are ready, you can get detailed reports of all the issues found. Unfortunately, the app does not seem to provide solutions or patches to fix the problems found.

WebReaver uses a powerful testing engine, called Sparta, to find vulnerabilities. It also uses a unique reporting system to avoid reporting inexistent issues. Still, there is a chance that false positives may occur.

All in all, WebReaver seems perfect for security consultants. Although a combination of manual and automated analyses is usually required, this tool can certainly facilitate your work by doing the automatic part. Fortunately, the app is free for non-commercial purposes. Yet, if you intended to use it for any profitable activity, you need to buy the Commercial license.

Review summary

Pros

  • Detects a wide range of vulnerability types
  • Powerful testing engine
  • Utilizes brute-force and fuzz-testing techniques
  • Unlimited number of scans

Cons

  • Not false-positive free
  • Does not seem to provide solutions

Comments

Suggestions

F-Secure
F-Secure
Free

To make sure that you are protected against modern and complex threats, you need advanced detection and protection technologies.

AVG LinkScanner
AVG LinkScanner

Surf, shop and social network knowing that you, your identity, and your personal information are always safe.

KeePass
KeePass
Free

Secure password manager with AES and Twofish encryption.

ESET Cyber Security Pro
ESET Cyber Security Pro
Free

Enhance and customize the protection of your Mac.

WaterRoof
WaterRoof
Free

Establishes a firewall for online protection.

FlashbackChecker
FlashbackChecker
Free

FlashbackChecker allows you to scan your Mac for Flashback trojan infection.

Download
Free