Jump to content
YOUR-AD-HERE
HOSTING
TOOLS

Locked Web Application Protection : WAP v.2.0.2


0x1

Recommended Posts

WAP automatic detects and corrects input validation vulnerabilities in web applications written in PHP Language (version 4.0 or higher) and with a low rate of false positives.

 

This is the hidden content, please

 

WAP detects the following vulnerabilities:

 

- SQL injection using MySQL, PostgreSQL and DB2 DBMS

- Reflected cross-site scripting (XSS)

- Stored XSS

- Remote file inclusion

- Local file inclusion

- Directory traversal

- Source code disclosure

- OS command injection

- PHP code injection

 

WAP is a static analysis tool that performs taint analysis to detect vulnerabilities, tracking malicious users inputs and checking if they reach calls of sensitive functions. It has a low rate of false positives because has implemented a data mining module to predict false positives when detects vulnerabilities.

 

The output of the tool is:

 

- shows the vulnerabilities found and how they are corrected

- new files with the corrections

 

Download : [HIDE-THANKS]

This is the hidden content, please
[/HIDE-THANKS]

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.