loading...

Discussion on: You might need a Web Application Security Scanner - but which one?

Collapse
robertsvensson profile image
Robert Svensson Author

There's some truth to that of course. But sometimes you just get a website/service/whatever dumped in your lap with a -"hey, keep this spaghetti monster secure now ok?".....and you need to figure out a decent way forward.

Collapse
tux0r profile image
tux0r

That's true. Usually, OWASP ZAP should be good enough for that if you know wtf you are doing.

But sometimes a complete rewrite is still the better solution.

Thread Thread
robertsvensson profile image