« Day 2 of the EUSecWest/core06 security conference in London... | Main | Configuring IIS 6.0 to turn on the TRACE method »


Oedipus Web App Vulnerability Scanner

I have started contributing to the Oedipus Web App Vulnerability Scanner project on Rubyforge. The project is progressing pretty fast - there is a GUI in CVS, and a lot of functionality going into the project in the near future.

I am working on less common HTTP methods, and plugins testing permissions on directories for stuff like HTTP PUT and WebDAV. You don't find them often, but when they are there they can be devastating from a defacement point of view. More details coming soon ...

Found this useful? Then Digg It.


Post a comment

(If you haven't left a comment here before, you may need to be approved by the site owner before your comment will appear. Until then, it won't appear on the entry. Thanks for waiting.)

All spam will be reported

About

This page contains a single entry from the blog posted on February 28, 2006 12:50 PM.

The previous post in this blog was Day 2 of the EUSecWest/core06 security conference in London....

The next post in this blog is Configuring IIS 6.0 to turn on the TRACE method.

Many more can be found on the main index page or by looking through the archives.

Creative Commons License
This weblog is licensed under a Creative Commons License.
Powered by
Movable Type 3.36

Valid XHTML 1.0!