January 2007
Wapiti - Web application security auditor
by 13 othersWapiti allows you to audit the security of your web applications.
It performs "black-box" scans, i.e. it does not study the source code of the application but will scans the webpages of the deployed webapp, looking for scripts and forms where it can inject data.
Once it gets this list, Wapiti acts like a fuzzer, injecting payloads to see if a script is vulnerable.
December 2006
subwiki.tigris.org
A wiki that uses Subversion for its data repository, implemented as a Python CGI.
November 2006
1
(3 marks)