Web
 site security is very important because the website contain relevant 
information about a company and now a days website defacement is very 
common even a script kiddies and a new born hackers can do this. The 
most common vulnerability like SQL-Injection and cross site scripting 
lead towards the defacement. 
So you want to secure your web application than find vulnerabilities on it before a hacker find it, try to use some relevant tools and find vulnerabilities and fix it. There are so many tools available for both Windows and Linux platform and commercial and open source tool. Below is the best web vulnerability scanner tool that we have discussed before.
So you want to secure your web application than find vulnerabilities on it before a hacker find it, try to use some relevant tools and find vulnerabilities and fix it. There are so many tools available for both Windows and Linux platform and commercial and open source tool. Below is the best web vulnerability scanner tool that we have discussed before.
OWASP Zed Attack Proxy- ZAP
OWASP or Open Web Application Security
 Project is a non profit organisation world wide that are focusing on 
improving the security of web application.The Zed Attack Proxy (ZAP) is an easy to use integrated penetration testing
 tool for finding vulnerabilities in web applications. It has an 
automatic scanning functionality and it has a set of tools that allow 
you to find vulnerability manually.
Download OWASP Zed Attack Proxy - ZAP 
Web Application Attack and Audit Framework (W3AF)
W3af
 is a Web Application Attack and Audit Framework. The project goal is to
 create a framework to find and exploit web application vulnerabilities 
that is easy to use and extend. w3af is working for Become the best Open
 Source Web Application Exploitation Framework. It is available on 
Backtrack 5 too.
 

 
 

