Web application security - the fast guide 1.1 | Page 83
Chapter 4 - Be the attacker
P a g e | 83
4.15.3 Skipfish:
Skipfish is an active web application security reconnaissance tool. It prepares an
interactive sitemap for the targeted site by carrying out a recursive crawl and
dictionary-based probes.
Can be downloaded from google code Skipfish
4.15.4 w3af
A high-performance, easy, and sophisticated Web application security testing
tool