WS-Attacker is a modular framework for web services penetration testing developed by the Chair of Network and Data Security, Ruhr University Bochum, and Hackmanit GmbH. It allows loading WSDL files, sending SOAP messages, and extending functionality with plugins and libraries for specific Web Services attacks. More information on its architecture and extensibility can be found in the Penetration Testing Tool for Web Services Security paper. Current version supports SOAPAction spoofing, WS-Addressing spoofing, XML Signature Wrapping, and XML-based DoS attacks.
Common questions about WS-Attacker including features, pricing, alternatives, and user reviews.
WS-Attacker is Modular framework for web services penetration testing with support for various attacks. It is a Vulnerability Management solution designed to help security teams with Web Security.
WS-Attacker is a free Vulnerability Management tool. This makes it accessible for organizations of all sizes, from startups to enterprises. Visit https://github.com/RUB-NDS/WS-Attacker/ for download and installation instructions.
Popular alternatives to WS-Attacker include:
Compare all WS-Attacker alternatives at https://cybersectools.com/alternatives/ws-attacker
WS-Attacker is for security teams and organizations that need Web Security. It's particularly suitable for small to medium-sized teams looking for cost-effective solutions. Other Vulnerability Management tools can be found at https://cybersectools.com/categories/vulnerability-management
Head-to-head feature, pricing, and rating breakdowns.