Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
The R&S® Web Application Firewall (WAF), when paired with a network firewall, greatly enhances your organization's security posture. This combination ensures that your IT infrastructure meets contemporary standards for resilience and protection. Drawing on decades of expertise and development, our web application firewall effectively shields the corporate network from common threats, including zero-day vulnerabilities, SQL injection attacks, cross-site scripting, and Distributed Denial of Service (DDoS) incidents at the application level. It provides robust safeguards for essential enterprise applications, encompassing both legacy systems and tailored APIs, while adhering to data protection laws. As businesses increasingly depend on web-based solutions, the significance of web applications within organizations continues to rise, leading to a growing exploitation of their weaknesses by cybercriminals. Consequently, implementing a comprehensive security strategy is vital to combat these evolving threats.
Description
Wapiti is a tool designed for scanning vulnerabilities in web applications. It provides the capability to assess the security of both websites and web applications effectively. By conducting "black-box" scans, it avoids delving into the source code and instead focuses on crawling through the web pages of the deployed application, identifying scripts and forms that could be susceptible to data injection. After compiling a list of URLs, forms, and their associated inputs, Wapiti simulates a fuzzer by inserting various payloads to check for potential vulnerabilities in scripts. It also searches for files on the server that may pose risks. Wapiti is versatile, supporting attacks via both GET and POST HTTP methods, and handling multipart forms while being able to inject payloads into uploaded filenames. The tool raises alerts when it detects anomalies, such as server errors or timeouts. Moreover, Wapiti differentiates between permanent and reflected XSS vulnerabilities, providing users with detailed vulnerability reports that can be exported in multiple formats including HTML, XML, JSON, TXT, and CSV. This functionality makes Wapiti a comprehensive solution for web application security assessments.
API Access
Has API
Yes
API Access
Has API
No
Integrations
Drupal
No
Google Chrome
No
Google Sheets
No
HTML
No
JSON
No
Microsoft Excel
No
Mozilla Firefox
No
SQL
No
WordPress
No
XML
No
Integrations
Drupal
Yes
Google Chrome
Yes
Google Sheets
Yes
HTML
Yes
JSON
Yes
Microsoft Excel
Yes
Mozilla Firefox
Yes
SQL
Yes
WordPress
Yes
XML
Yes
Pricing Details
No price information available.
Free Trial
Yes
Free Version
No
Pricing Details
Free
Free Trial
No
Free Version
Yes
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
Yes
Mac
Yes
Linux
Yes
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Customer Support
Business Hours
No
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
No
In Person
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
No
In Person
No
Vendor Details
Company Name
Rohde & Schwarz Cybersecurity
Founded
1993
Country
Germany
Website
www.rohde-schwarz.com/products/cybersecurity/web-application-firewalls_250809.html
Vendor Details
Company Name
Wapiti
Website
wapiti-scanner.github.io
Product Features
Web Application Firewalls (WAF)
Access Control / Permissions
No
Alerts / Notifications
No
Automate and Orchestrate Security
No
Automated Attack Detection
No
DDoS Protection
No
Dashboard
No
IP Reputation Checking
No
Managed Rules
No
OWASP Protection
No
Reporting / Analytics
No
Secure App Delivery
No
Server Cloaking
No
Virtual Patching
No
Zero-Day Attack Prevention
No