News

Follow on Twitter
For Safe3 SQL Injector, click here.

Introduction

Safe3WVS is one of the most powerful web vulnerability scanner with AI on-the-fly web spider crawling technology helps to identify known and unknown vulnerabilities within the Web application layer.Especially when scans web portals ,you will find it is the most fast tool to dig vulnerabilities such as sql injection, cross-site scripting, upload vulnerability, and more.

Features

  • Full support for Basic, Digest, NTLM http authentications.
  • Intelligent web spider automatic removes repeated web pages,this is one reason why it is so damn fast.
  • SQL injection state scanning technology can find vulnerabilities even when WAF or HIPS protectes the site.
  • An automatic javascript analyzer allows for extracting urls from Ajax, Web 2.0 and any other applications.
  • Support to scan SQL injection, XSS, upload vulnerability, admin path, potential vulnerability, directory list vulnerability and any other vulnerabilities such as svn information leakage.

Download

Safe3WVS can be downloaded from:


This is strongly recommended before reporting any bug to the mailing list.

Documentation

  • Safe3WVS ChangeLog.
  • SQL injection: Not only AND 1=1 slides presented at the 2nd Digital Security Forum in Lisbon (Portugal) on June 27, 2009.
  • Advanced SQL injection to operating system full control whitepaper and slides presented at Black Hat Europe 2009 in Amsterdam (The Netherlands) on April 16, 2009.
  • Expanding the control over the operating system from the database slides presented at SOURCE Conference 2009 in Barcelona (Spain) on September 21, 2009.
  • Got database access? Own the network! slides presented at AthCon 2010 in Athens (Greece) on June 3, 2010.

Screenshot

Screenshot

Mailing list

Mailing list

The mailing list is admin[AT]safe3.com.cn the preferred way to ask questions, report bugs, suggest new features and discuss with other users.

License

License

Safe3WVS is copyrighted by its company.



Developers

David Shee - Lead developer

You can contact both developers by writing to safe3q@gmail.com.

Contribute

Contribute

We are looking for people who can translate to any other language, are up to do security research, know about web application security, database assessment and takeover, software refactoring and are motivated to join the development team.

If this sounds interesting to you, get in touch!

Purchase

Donate
Your purchase by paypal will please the development team - It will pay for the subversion server's bills and ideally for some night-life around the damn good old Continent.