Categorie:
Software de segurança informática /
Software de segurança cibernética /
Software de gerenciamento de vulnerabilidades /
Netsparker Security Scanner Reveja
Netsparker Security Scanner
Avaliações: 16 | Classificação geral: BoaExcelente | |
Boa | |
Média | |
Mau | |
Horrível |
Netsparker Web Application Security Solution automatically and accurately identifies XSS, SQL Injection and other vulnerabilities in web applications. Netsparker's unique Proof-Based Scanning Technology allows you to allocate more time to fix the reported flaws by automatically exploiting the identified vulnerabilities in a read-only and safe way, and also produces a proof of exploitation. Therefore you can immediately see the impact of the vulnerability and do not have to manually verify it.
They moved away from being able to offer "packs" of scans where we could easily scan short lived sites. They only offer a subscription model intended for recurring scans. by Netsparker on 26/02/2019 Thank you for your positive feedback. We sincerely love having you as a Netsparker client.
Netsparker is easy to use, easy to configure, and you can be up and running your first scan in a matter of minutes. The scan results offer details on how to remediate the findings as well as what they did to find and validate the finding.
One main issues. I would like to be able to change a domain. If I have a license for two domains, I should be able to rotate them. If server1.com goes EoL and server2.com has taken its place, I have to buy another subscription. Not cool. by Netsparker on 22/02/2019 Thank you for your feedback! We are glad that Netsparker is working out for you. Should you need to change a domain, you may do so upon renewal by contacting Support.
Any issues that we contact Netsparker Support on are answered very quickly with detailed information that helps us decide what to do.
There are issues that we end up labeling as False Positive, so that is disappointing. However, it doesn't change my opinion of the product. by Netsparker on 19/06/2019 Thank you for your review of Netsparker, we appreciate you taking the time to evaluate the product and are delighted to be of service to your business.
I like Netsparker because is very easy to use, but at the same time has a lot of options that allow an expert user to customize the level of scanning. Also make authenticated scan is very easy (several options are available). Report templates are different and cover all your needs.
When do concurrent scans it consumes a lot of resources. by Netsparker on 11/06/2019 Thank you for your review of Netsparker, this is much appreciated. We are glad to hear the software satisfies your and your clients' needs.
UI is top-notch and easy to grok. It's highly efficient and customizable tool provide in depth reporting when you need it most. Support team is A+! Being able to generate multiple types of reports based on customer needs is quite useful.
Docs were a bit outdated or not easy to follow when we initially started using the product. Support has steadily been improving them and they look great now. by Netsparker on 28/02/2019 Thank you for your positive feedback. We are glad that Support documentation is improving.
Its accurate findings and overall testing procedures. It enumerates more than other tools do with additional options to boot.
Lack of CSV reporting. I wish I could get the same exact reporting features the Detailed HTML reporting templates do but into a CSV format for easy integration with our own custom reporting templates.
We use Netsparker for scanning our customers applications. Ease of use and Flexibility gives us freedom to use it wisely and help is completing our projects in timely manner.
Credential scanning and captcha configuration difficulties.
While being easy to operate, it is flexible; offering diverse functions in vulnerability assessment from detecting basic vulnerabilities like out-of-date app versions to generating executive style reports of scan results.
It gets quite slow when testing for some vulnerabilities in larger URLs. by Netsparker on 17/05/2019 Thank you for your feedback. We are thrilled that Netsparker has proven so useful for so many years.
Sometimes the scans have to be customized due to the size of the application and I had to submit the scan to a Netsparker Engineer for customization. by Netsparker on 12/06/2019 Thank you for your review of Netsparker! We appreciate you taking the time to review us and are glad to be of assistance to your business.
Netsparker is pretty intuitive. It simulates a lot of different attacks and vulnerabilities and present the result in a variety of different reports.
It's somewhat expensive, at least if you want the enterprise version. It's not yet possible to ignore specific findings in later scans by marking them as false positives. by Netsparker on 08/11/2019 Dear Jesper, Thank you for taking the time to review Netsparker. We are glad to be of service to you & the Stibo Systems!
The software is very easy to use yet has extreme amount of customization for scanning any web application.
Without an intimate knowledge of the capability of the tool, you may miss out on truly reaping its benefits in deep scanning of web applications.
You have to define target system features but it should discover the target system and it should adapt itself. by Netsparker on 21/06/2019 Thank you for submitting your review of Netsparker. We are delighted to be of service to your company.
Excellent and Easy in terms of Automated Security Scanning and less false positives.
Nothing I can say as Netsparker has been very helpful to our organization in identifying and fixing security vulnerabilities. by Netsparker on 04/06/2019 Thank you for your review of Netsparker, we are glad to be of service to your company.
Would be nice if the security scanner were to include scans to help harden the server and OS, but this seems to be strictly a web application scanner. I have to use a second product to scan the OS. by Netsparker on 20/02/2019 Thank you for your positive feedback. At present our plans are to focus on being the best web application scanner out there.
They are not a well known vendor so we have to explain why we use Netsparker vs some of the better known vendors
Netsparker comes with an automation API so it is possible to include it as part of a Continuous Integration / Continuous Deployment (CI/CD) system. It usually works but not always.
There is almost no documentation about how to use the product. You are expected to open a support ticket and ask how to do some of simplest things and it usually take a day to get a response back from support. Often the response is, "We don't support that", or "We don't have a sample that does that". I one time asked for .Net Framework sample code to pull a report from Netsparker and the answer I got was "Go toe the GUI and select these buttons. The report will download." The problem was I needed to download the reports problematically. Other times I asked for .Net samples and was given Python code. They are the same, correct? by Netsparker on 14/02/2019 Hello,Thank you for your feedback.I am sorry to hear you have encountered such issues. Rest assured that this is not the norm, hence why I am personally reaching out to you.We do have extensive product documentation (https://www.netsparker.com/support/) and we pride ourselves on giving excellent product support, as can be seen by the many testimonials and case studies we have published.However sometimes things can go wrong. So can you please send me an email on [email protected] so I can personally look into this matter and iron out any issues there are, so you can benefit from our product.Looking forward to hearing from you.Mehmet ATA