The feature packed and performance oriented Arachni Framework's new version has been released. The new version v1.0 is a Framework based on the Ruby programming language which is what makes it so performance efficient.
Features
Arachni is a smart Framework. It monitors and scans web applications and learns from them. It uses a number of factors in order to correctly assess the trustworthiness of results and intelligently identify (or avoid) false-positives. Where other Frameworks just provide you a platform to build upon, Arachni understands that web applications are dynamic, going through different phases with varying complexity in different phases. Arachni has been developed to learn and adapt to these changes. This way, attack/input vectors that would otherwise be undetectable by non-humans can be handled seamlessly.
Also it has been made versatile enough to cover a great deal of use-cases, ranging from a simple command line scanner utility, to a distributed high performance grid of scanners, to a Ruby library allowing for scripted audits, to a multi-user multi-scan web user interface.
Upgrades from previous versions
A major upgrade that Arachni has been given over its previous versions is the integrated browser support. This feature sets it apart from all other like minded frameworks and also lets it take advantage of internet technologies like HTML, JavaScript and AJAX.The new scanner has been given a benchmark of WIVET v3 and WAVSEP v1.5, which is remarkably higher than even established commercial products. Also, since this is a major rewrite, backwards compatibility had to be sacrificed.
The entire list of features can be found at : : http://www.arachni-scanner.com/features/framework
And if you wish to use Arachni straight away, you can download it right now from : http://www.arachni-scanner.com/download/
No comments:
Post a Comment