W3Af - Web Application Penetration Testing Framework

Posted by Deepanker Verma Friday, May 17, 2013 0 comments
W3Af is a popular web application penetration testing framework. It comes with powerful web assessment and exploitation plugins that makes it flexible and powerful tool for finding vulnerabilities in web applications.

It has automatic scanning with a nice user friendly GUI interface  Users can also manually craft and send custom HTTP requests.

W3Af - Web Application Penetration Testing Framework

It has a fast HTTP client that offers following features

  • Proxy support
  • HTTP Basic and Digest authentication
  • UserAgent faking
  • Add custom headers to requests
  • Cookie handling
  • HTTP response cache
  • DNS cache
  • File upload using multipart


It has a big knowledge base that contains all the vulnerabilities information. You can also easily use this knowledge base while writing your own plugin for W3af.

Home page and download

0 comments:

Post a Comment

Blog Archive