Invicti

Invicti

Invicti Security
+
+

Related Products

  • Aikido Security
    239 Ratings
    Visit Website
  • Astra Pentest
    295 Ratings
    Visit Website
  • ESET PROTECT Advanced
    2,303 Ratings
    Visit Website
  • Orca Security
    606 Ratings
    Visit Website
  • DriveStrike
    24 Ratings
    Visit Website
  • Criminal IP ASM
    20 Ratings
    Visit Website
  • ManageEngine Endpoint Central
    3,242 Ratings
    Visit Website
  • NinjaOne
    6,017 Ratings
    Visit Website
  • Google Cloud Run
    349 Ratings
    Visit Website
  • Kitecyber
    55 Ratings
    Visit Website

About

Crashtest Security is a SaaS-based security vulnerability scanner allowing agile development teams to ensure continuous security before even hitting Production. Our state-of-the-art dynamic application security testing (DAST) solution integrates seamlessly with your dev environment and protects multi-page and JavaScript apps, as well as microservices and APIs. Set up Crashtest Security Suite in minutes, get advanced crawling options, and automate your security. Whether you want to see vulnerabilities within the OWASP Top 10 or you want to go for deep scans, Crashtest Security is here to help you stay on top of your security and protect your code and customers.

About

Application security is noisy and overly complicated. The good news: you can relieve that unnecessary noise and dramatically reduce your risk of attacks with Invicti. Keeping up with security is more manageable with accurate, automated testing that scales as your needs shift and grow. That's where Invicti shines. With a leading dynamic application security testing solution (DAST), Invicti helps teams automate security tasks and save hundreds of hours each month by identifying the vulnerabilities that really matter. Combining dynamic with interactive testing (DAST + IAST) and software composition analysis (SCA), Invicti scans every corner of an app to find what other tools miss. With asset discovery, it's easier to discover all web assets — even ones that are lost, forgotten, or created by rogue departments. Through tried-and-true methods, Invicti helps DevSecOps teams get ahead of their workloads to hit critical deadlines, improve processes, and communicate more effectively.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Companies of all sizes

Audience

Companies that employ web application services use Netsparker to make sure their web services are secure

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

€35 per month
Free 14 Day Trial with Flexible Pricing to suit your requirements
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Reviews/Ratings

Overall 4.6 / 5
ease 4.6 / 5
features 4.2 / 5
design 4.2 / 5
support 5.0 / 5

Reviews/Ratings

Overall 4.8 / 5
ease 4.5 / 5
features 4.7 / 5
design 4.3 / 5
support 4.5 / 5

Pros & Cons from Real Users

Pros

  • As Information security/Data Privacy manager we wanted a product that would help us identify security vulnerabilities and provide recommendations on how to eliminate them. Crashtest does that on several levels, from scanning the requests to checking the headers and then trying to actually penetrate systems change/destroy data in a very clever way. Support staff very helpful, responsive and friendly. This product can be integrated with so many CI/CD tools and with a bit of configuration it is easy to automate and integrate to almost any system and Notify/prevent security vulnerabilities from reaching areas they should not.
  • Crashtest Security provides a great vulnerability detection while it is very easy to setup and use. It detects vulnerabilities such as SQL Injections or Code Execution from a blackbox point of view. So I can really see, how attackers view my web applications from the outside. We have integrated it our processes and get Mattermost notifications regarding our scan results.
  • - Very easy setup - Provides solutions for findings with the help of a wiki - Generates an easy to read scan result (even for non tech people) - Very friendly support
  • The solution is easy to setup. The UI is mostly clean. The solution provides a helpful findings wiki.
  • - Easy to set up and integrate. - Performs a wide range of scans and scanning scenarios. - User friendly scan results.

Cons

  • As a new system, Crashtest had some issues when we started using it, but the support team was very responsive in fixing any issues we encountered. If I have to be picky, the one thing I would raise is that there is a bit of room to improve performance.
  • Some features (such as configuring scanning for networks not reachable from the internet) are not yet available as self service functionality using the web frontend. However, the Crashtest Security support was very friendly and eager to support us with the setup.
  • - many pages cant be opened in a new tab - sometimes the scanner cant login to our application, a manual restart fixes the problem
  • Product is not 100 % stable yet. Sometimes duplicated findings occur. The JavaScript-built UI is not always easy or reliable to navigate (open in new tab is not possible for many pages).
  • As of today, I couldn't observe any disadvantages.

Pros & Cons from Real Users

Pros

  • I like that is effortless to deploy, understand and use. It comes with great features and makes scanning for threats seamless. It is very accurate and never misses threats. It is also relatively affordable.
  • It is completely automated and gives you an easy-to-understand report in the end. You can check the website against most common as well as rare attacks with just one single click. Its malware database gets frequent updates.
  • Having used Netsparker Security Scanner for along time, I have a few things that I like. First, it is easy to use. Secondly, it comes with great features. It is very secure and keeps threats away from our email gateway.
  • Easy to use. To prevent your website from any cyber attack, you can use it for regular analysis and strength tests of your website. The user interface is very friendly and easy to understand.
  • The scanned reports not only provide vulnerability but users can see the report and check what was identified.

Cons

  • I can't think of any issues with Netsparker Security Scanner. It is a perfect solution.
  • It is sporadic, but it may give you some false positives. The price range is quite good.
  • Since Netsparker Security Scanner comes with many features and has worked well for us, I have no single complaints.
  • It is very expensive, yet you can get a demo and then decide if you want it or not. It is easy to use yet has powerful tools.
  • It is only available for Windows but it should be available for Linux too as most of the security analysts use Linux as their operating system.

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Crashtest Security
Founded: 2017
Germany
crashtest-security.com

Company Information

Invicti Security
Founded: 2018
United States
www.invicti.com

Alternatives

Alternatives

Astra Pentest

Astra Pentest

Astra Security
PT Application Inspector

PT Application Inspector

Positive Technologies
Invicti

Invicti

Invicti Security
Acunetix

Acunetix

Invicti Security
Acunetix

Acunetix

Invicti Security

Categories

Categories

Vulnerability Management Features

Asset Discovery
Asset Tagging
Network Scanning
Patch Management
Policy Management
Prioritization
Risk Management
Vulnerability Assessment
Web Scanning

Vulnerability Scanners Features

Asset Discovery
Black Box Scanning
Compliance Monitoring
Continuous Monitoring
Defect Tracking
Interactive Scanning
Logging and Reporting
Network Mapping
Perimeter Scanning
Risk Analysis
Threat Intelligence
Web Inspection

Endpoint Protection Features

Activity Log
Antivirus
Application Security
Behavioral Analytics
Device Management
Encryption
Signature Matching
Web Threat Management
Whitelisting / Blacklisting

Vulnerability Management Features

Asset Discovery
Asset Tagging
Network Scanning
Patch Management
Policy Management
Prioritization
Risk Management
Vulnerability Assessment
Web Scanning

Application Security Features

Analytics / Reporting
Open Source Component Monitoring
Source Code Analysis
Third-Party Tools Integration
Training Resources
Vulnerability Detection
Vulnerability Remediation

Computer Security Features

Anti Spam
Antivirus
Audit Trail
Compliance Management
Database Security Audit
File Access Control
Financial Data Protection
Maintenance Scheduling
Real Time Monitoring
Security Event Log
Virus Definition Update
Vulnerability Protection

Cybersecurity Features

AI / Machine Learning
Behavioral Analytics
Endpoint Management
Incident Management
IOC Verification
Tokenization
Vulnerability Scanning
Whitelisting / Blacklisting

IT Security Features

Anti Spam
Anti Virus
Email Attachment Protection
Event Tracking
Internet Usage Monitoring
Intrusion Detection System
IP Protection
Spyware Removal
Two-Factor Authentication
Vulnerability Scanning
Web Threat Management
Web Traffic Reporting

Integrations

CircleCI
GitHub
GitLab
Microsoft Teams
Slack
Axonius
Bamboo
Bitbucket
CodeShip
DefectDojo
Discord
Faraday
Google Cloud Build
Google Hangouts
Heroku
Jenkins
Jira
ThreadFix
Zapier

Integrations

CircleCI
GitHub
GitLab
Microsoft Teams
Slack
Axonius
Bamboo
Bitbucket
CodeShip
DefectDojo
Discord
Faraday
Google Cloud Build
Google Hangouts
Heroku
Jenkins
Jira
ThreadFix
Zapier
Claim Crashtest Security and update features and information
Claim Crashtest Security and update features and information
Claim Invicti and update features and information
Claim Invicti and update features and information