VOOKI – Free Web Application Vulnerability Scanner
Vooki is a free web application vulnerability scanner. Vooki is a user-friendly tool that you can easily scan any web application and find the vulnerabilities. Vooki includes Web Application Scanner, Rest API Scanner, and reporting section.
Web Application Scanner
Vooki – Web Application Scanner can help you to find the following attacks
- SQL Injection
- Command Injection
- Header Injection
- Cross-site scripting – reflected,
- Cross-site scripting – stored
- Cross-site scripting – dom based
- Missing security headers
- Malicious JS script execution
- Using components with known vulnerabilities
- Jquery Vulnerabilities
- Angularjs Vulnerabilities
- Bootstrap Vulnerabilities
- Sensitive Information disclosure in response headers
- Sensitive Information disclosure in error messages
- Missing Server Side Validation
- Javascript Dynamic Code Execution
- Sensitive Data Exposure
How to use Vooki Web Application Scanner
Rest API Scanner
Vooki – Rest API Scanner can help you to find the following attacks
- SQL Injection
- Command Injection
- Header Injection
- Cross-site scripting ( possibilities )
- Missing security headers
- Sensitive Information disclosure in response headers
- Sensitive Information disclosure in error messages
- Missing Server Side input Validation
- Unwanted use of HTTP methods
- Improper HTTP Response