Application delivery infrastructure analysis
Scanning delivery infrastructure for known vulnerabilities and misconfigurations, and discovering web applications available for analysis.
A modern solution for dynamically analyzing web applications and APIs for information security vulnerabilities, using intelligent algorithms to increase the likelihood of detecting hidden flaws and reduce the number of false positives.
Scanning delivery infrastructure for known vulnerabilities and misconfigurations, and discovering web applications available for analysis.
Supports a wide range of endpoint discovery technologies: static and dynamic crawling, directory and file brute-forcing with wordlists, import and discovery of OpenAPI, SOAP, GraphQL and HAR specifications, integration with SolidWall WAF to import endpoints from traffic, and static-dynamic analysis of client-side JavaScript code.
Scanning modules detect injections (including XSS, SQLi, SSTI), serialization and format parsing issues, authorization and authentication problems, and more.
Supports integration via REST API or CLI, with synchronous or asynchronous scan execution, and export of JSON reports to external vulnerability management systems.