Netsparker Community Edition is Back!
We announced Netsparker Community Edition in early 2010. Security community loved it, however we weren’t sure about supporting it as we couldn’t figure out the consequences in the long term. You know,...
View ArticleReinventing Our Freemium Model
There's been plenty of discussion among the startup community about the pros and cons of the Freemium business model. Some declare it to be a resounding success, whilst others see it as a dismal...
View ArticleNetsparker 2.4.2.0 - Chrome Style Updates
If you used Chrome browser you know how great its update system is, just like you we love that feature of Chrome, so we implemented a similar seamless update system for Netsparker. It’ll update what’s...
View ArticleNetsparker 2.4.5.0 - Windows 8 Support
If you are not living under a rock, you should have noticed that Microsoft has released the latest version of Windows by the end of October this year. Terribly ashamed to admit, due to a third party...
View Article20 Percent Time
For the last few months we have been experimenting a slightly modified version of Google’s “20 percent time” policy here at Mavituna Security and it seems to be working quite well.“When you're hired at...
View ArticleNetsparker 2.5 Released
Integration with Bug Tracking Tools and Send To FeatureIntegrating Netsparker to other systems was one of the most requested features. We have tried to solve it by introducing this so called Send To...
View ArticleNetsparker 2.5.3 - Equinox Release
This is a minor update to Netsparker Standard/Professional editions which contains bug fixes and user interface enhancements for form authentication. We have fixed a critical bug where Netsparker was...
View ArticleAre Hackers a Step Ahead? An Analysis using Web Application Vulnerabilities
If you have been involved in the IT industry you’ve definitely heard the myth that hackers are always a step ahead. It seems it is the truth because hack attacks are on the increase. Follow some of the...
View ArticleWhat is new and what changed in OWASP TOP 10 2013
Do you use the Open Web Application Security Project (OWASP) Top 10 Project as part of your web security testing program? If not, now’s a great time to get on board. There’s a new version coming out...
View ArticleBusinesses Need Automated Web Application Security Scanners to Detect Web...
Some web security experts state that automated web application security scanners are not a good enough solution to secure your websites and web applications because they do not detect all web...
View ArticleThe Problem of False Positives in Web Application Security and How to Tackle...
A false positive is like a false alarm; your house alarm is triggered and there is no burglar. In web application security a false positive is when a web application security scanner indicates that...
View ArticleWeb Application Security Misconception- XSS is not Dangerous
You have just been promoted from a web application developer to a managerial role where you are responsible for the security of the company’s web applications. Happy about the new job, you launch a web...
View ArticleDetails of South African Whistleblowers Exposed via SQL Injection
On the 17th of May 2013 a group of hackers called DomainerAnon took responsibility for the hack of the South African Police Services (SAPS) website. DomainerAnon also claim an affiliation with the...
View ArticleFalse Negatives in Web Application Security
As we have seen in a previous blog post, false positives in web application security have a long term bad affect on the security of your web applications and also on the procedures used for web...
View ArticleThe dangerous complexity of web application security
It’s an old saying but it’s been revived in information security circles lately: you have to find every security flaw but a malicious hacker only has to find one. It’s the harsh reality we face today...
View ArticleUse Netsparker to Detect Ruby on Rails Vulnerabilities
On the 28th of January 2013, Ruby on Rails announced the release of versions 3.0.20 and 2.3.16 that addresses an extremely critical security in the framework itself. The vulnerability is a remote code...
View ArticleAn XSS is Worth up to $10,000 According to Google
Last week Google increased the financial rewards for Google’s Web Vulnerability Program. What does this exactly means?What is the Google Web Vulnerability Reward Program?Internet giant Google pays up...
View ArticleOWASP Top 10 for 2013 Explained
OWASP, also known as Open Web Application Security Project just released the OWASP Top 10 for 2013. The OWASP Top 10 is a list of most common web application vulnerabilities and flaws found in today’s...
View ArticleHighlights of the New Netsparker Version 3 Features and Improvements
Finally Netsparker version 3.0 is soon to be released so stay tuned with us! We have listened to all of your feedback and did our best to add some new cool features. We improved the mechanics of the...
View ArticleCreate Own Scan Policies with Netsparker Scan Policy Editor
In Netsparker Version 3 we introduced the all new Scan Policy Editor that can be used to fine tune web application security scans so they take less time to complete and consume less bandwidth. In this...
View Article