Netsparker Standard

On-premises desktop vulnerability checker with advanced penetration testing tools and reporting utilities - a fully configurable tool, ideal for professionals and individual security developers who manage the security of only a few sites.  

Fabricantes: Netsparker
Category: Utilitários
Learn more about Netsparker Standard

Request a Quote

What is Netsparker Standard?

On-premises desktop vulnerability checker with advanced penetration testing tools and reporting utilities - a fully configurable tool, ideal for professionals and individual security developers who manage the security of only a few sites.

Find vulnerabilities on any type of site automatically

Netsparker uses a Chrome-based tracking engine. It can crawl and verify any type of modern and customized web application, including HTML5, Web 2.0, and SINGLE-page applications (SPA).

With Netsparker, you can start an automated web vulnerability scan in seconds, because you only need to set up credentials if you're scanning a site behind a login page. Everything else is automated, including heuristic detection of URL rewrite rules, custom 404 error pages, and anti-CSRF tokens.

Save time and costs with proof-based scanning

Netsparker pioneered Proof-Based Scanning, a technology that automatically verifies identified vulnerabilities, demonstrating that they are real and not false positives. It checks them generating a proof of exploitation with the following results:

  • All post-scan actions are automated. You don't need to manually check the scan results, saving you time and resources.
  • The evidence of exploitation demonstrates the real impact that a vulnerability could have exploited, helping you truly understand and prioritize problems.
  • Web vulnerability assessments can be delegated to less qualified team members because they don't need to know how to manually exploit the vulnerabilities.

Identify more than pending low vulnerabilities

Traditional dynamic application security testing (DAST) solutions can only detect vulnerabilities by sending a request to the destination and analyzing the response. This limits your detection capabilities to a smaller number of web application vulnerabilities.

The Netsparker Web application security solution replaces traditional vulnerability scanning techniques. It uses the Netsparker Hawk1 vulnerability testing infrastructure to identify even the most complex vulnerabilities, such as Server Side Request Forgery (SSRF) and out-of-band and second-order vulnerabilities.

Use a fully configurable tool that fits your environment

While the Netsparker Web application security solution is easy to use and fully automated, it is still fully configurable. All features and aspects of verification, including automated ones, are customizable.

Before you start a scan, you can configure the scope of the scan to instruct the scanner to crawl the site. You can also configure the verification policy to determine which security checks should be performed during the scan, along with custom cookies, anti-CSRF tokens, custom HTTP headers, and more.

Drill deeper and test all possible vector attacks with your Web Security Multi Tool

While most security technical issues can be identified and exploited automatically, logical vulnerabilities can be identified only manually. That's why you need the right tool for the job – something that extends the capabilities of a traditional automated web vulnerability scanner.

Although Netsparker is an automated solution, it has all the penetration testing tools you need to help you perform a thorough assessment of the security of your target web application. It includes a manual crawler, a controlled scan feature, an HTTP request builder, and several other tools that make it the best web security toolkit.

Generate any type of report for compliance and management

Many professionals fear creating and reading reports, but are part of the modern work environment. Developers need technical reports to understand and fix problems; management uses reports to help them allocate resources wisely, manage the team, and approve projects and workflows; and auditors want reports to ensure that the web application follows regulatory guidelines.

The Netsparker Web application security scanner has an integrated reporting tool to help you generate any type of report you want, including compliance reports for PCI DSS, HIPAA, and OWASP Top 10. You can also export scanning data in XML, CSV, and other file formats that can be easily analyzed by other tools.

System requirements

Web 2.0, HTML5, and custom applications

Compatible with applications built in PHP, .NET, JAVA, or any other language

You don't know what software you need or you haven't found what you were looking for?

You don't know what software you need or you haven't found what you were looking for? We have a team ready to help you choose the right software for your company.