Abstract
The increasing number of intrusions and data thefts on online systems is one of the triggers of the gro wing concern about security inside organizations. Nowadays, dynamic and extensible detection tools are required and critical to detect and diagnose vulnerabilities in Web systems. In this paper we present the development and evaluation of a vulnerability scanner for online systems. Unlike most existing tools, it is free and open source, available at SourceFo rge, and has a modular and extensible arch itecture. The achieved results show that the proposed tool, called Un iscan, is able to better detect and diagnose vulnerabilit ies such as LFI, RFI and RCE.
Talk to us
Join us for a 30 min session where you can share your feedback and ask us any queries you have