[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [WEB SECURITY] Announcing Scrawlr: SQL Injector and Crawler



Zihno,

Indeed my point was: if this static source code analysis tool really works, why relying on scrawlr?

good point.

Why not concentrating the two efforts into one reliable tool anyway?

because two technologies that have different approaches are always better when none of them is perfect.
who could claim to have a perfect fault-injector or source code security analyzer? these kind of tools are very hard to create... I mean, tools that work.



-- Romain http://rgaucher.info


---------------------------------------------------------------------------- Join us on IRC: irc.freenode.net #webappsec

Have a question? Search The Web Security Mailing List Archives: http://www.webappsec.org/lists/websecurity/archive/

Subscribe via RSS: http://www.webappsec.org/rss/websecurity.rss [RSS Feed]

Join WASC on LinkedIn
http://www.linkedin.com/e/gis/83336/4B20E4374DBA



Brought to you by http://www.webappsec.org
Search this site