信息网络安全 ›› 2014, Vol. 14 ›› Issue (9): 180-183.doi: 10.3969/j.issn.1671-1122.2014.09.041

• Orginal Article • Previous Articles     Next Articles

The Analysis and Comparison of Website Security Scanning Products

DI Hong-bo, YU Shao-hui, SU Ji-cheng   

  1. Network Security Division of Dalian Municipal Public Security Bureau,Dalian Liaoning 116011, China
  • Received:2014-08-06 Online:2014-09-01

Abstract: With the rapid development of the internet, the problems of Web security are more and more serious, almost everyday lots of websites have been tampered, or injected with trojans horse, backdoors and other malicious programs. The scanning products of website security have sprung up, although these products cannot protect websites, they can help administrators understand vulnerabilities and security risks. But how to define the quality of these products? In this paper, website security scanning principles are explained in detail, after the comparative analysis, some suggestions on how to improve the capability of website security scanner are put forward.

Key words: vulnerability, Web spider, SQL injection, XSS vulnerability