This post list web application security testing tools.
List of Web Application Security Scanners
List web application security testing tools:
- Wapiti
- Acunetix WVS
- WatcherWebSecurityTools
- Netsparker
- N-Stalker Web Application Security Scanner
- OWASP Zap Baseline Scan
- Arachni
- Vega
- Nessus
- Skipfish
- WebReaver
- Web Site Security Audit (WSSA)
- Syhunt Hybrid
- IronWASP
- WebWatchBot
- Secunia PSI
- KeepNI
- Exploit-Me
- x5s
- HconSTF
- PunkSca
- SessionProbe
List of Web Application Security Scanner
Wapiti
It is featured in CISSP exam.
Acunetix WVS
WatcherWebSecurityTools
Netsparker
N-Stalker Web Application Security Scanner
OWASP Zap Baseline Scan
ZAP Baseline Scan is a Python script that scans a website and reports the results.
You may also have a look at OWASP Application Security Verification Standard (ASVS).
Arachni
https://www.arachni-scanner.com
Vega
Nessus
Skipfish
https://code.google.com/archive/p/skipfish/
WebReaver
Web Site Security Audit (WSSA)
https://www.beyondsecurity.com
Syhunt Hybrid
IronWASP
WebWatchBot
http://www.exclamationsoft.com
Secunia PSI
KeepNI
Exploit-Me
http://labs.securitycompass.com
x5s
HconSTF
PunkScan
SessionProbe
SessionProbe is a multi-threaded pentesting tool designed to evaluate user privileges in web applications.
It is free and open software (FOSS).