OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: [Full-disclosure] Flex website scanners

From: Jack Mannino (jack.a.manninogmail.com)
Date: Tue Aug 25 2009 - 18:25:56 CDT


Check out SWFScan. It does what a scanner is supposed to do, which is
find low-hanging vulnerabilities. The tool does a pretty good job at
decompiling for the most part, but you still really need to do manual
analysis on the code!! You should never rely on ANY scanner to do 100%
of your analysis.

Link-
https://h30406.www3.hp.com/campaigns/2009/wwcampaign/1-5TUVE/index.php?key=swf

-Jack Mannino

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/