Wapiti : Wapiti allows you to audit the security of your web applications.
It performs "black-box" scans, i.e. it does not study the source code of the applica...
SSL Server Test : This free online service performs a deep analysis of the configuration of any SSL web server on the public Internet.
WebScarab : WebScarab is a framework for analysing applications that communicate using the HTTP and HTTPS protocols.
Subgraph Vega : Vega is an open source platform to test the security of web applications. Vega can help you find and validate SQL Injections, Cross-Site Scripting (XS...
SlimerJS : A scriptable browser for Web developers
A passive reconnaissance tool inside the DOM (experimental)