08 September 2009 | 11,129 views

SWFScan – Free Flash Application Security Scanner

Want to Learn Penetration Testing

HP SWFScan is a free tool developed by HP Web Security Research Group, which will automatically find security vulnerabilities in applications built on the Flash platform.

HP is offering SWFScan because:

  • Their research shows that developers and increasingly implementing applications built on the Adobe Flash platform without the required security expertise.
  • As a result, they are seeing a proliferation of insecure applications being deployed on the web.
  • A vulnerable application built on the Flash platform widens your website’s attack surface creating more opportunity for malicious hackers.

How SWFScan works and what vulnerabilities it finds:

  • Decompiles applications built on the Adobe Flash platform to extract the ActionScript code and statically analyzes it to identify security issues such as information disclosure.
  • Identifies and reports insecure programming and deployment practices and suggests solutions.
  • Enables you to audit third party applications without requiring access to the source code.

You can download SWFScan here:

SwfScan.msi

Or read more here.

Post to Twitter Post to Facebook Post to Google Buzz Post to Delicious Post to Digg Post to Reddit Post to StumbleUpon






Recent in Hacking Tools:
- Arachni v0.4 Released – High-Performance (Open Source) Web Application Security Scanner Framework
- Patator – Multi Purpose Brute Forcing Tool
- MySQLPasswordAuditor – Free MySQL Audit/Password Recovery & Cracking Tool

Related Posts:
- Netsparker Community Edition – Web Application Security Scanner
- ServiceCapture – HTTP Traffic Capture for Debugging Flash
- SWFIntruder – Analysis and Security Testing of Flash Applications

Most Read in Hacking Tools:
- Top 15 Security/Hacking Tools & Utilities - 1,627,887 views
- Brutus Password Cracker – Download brutus-aet2.zip AET2 - 897,217 views
- wwwhack 1.9 – Download wwwhack19.zip Web Hacking Tool - 503,762 views

Advertise on Darknet


One Response to “SWFScan – Free Flash Application Security Scanner”

  1. Morgan Storey 14 September 2009 at 2:09 am Permalink

    I have used this tool a couple of times for my own interest, it is very good and amazing what developers think they can hide right there in the flash code. Stuff like file system paths, and passwords, crazy.