Website security is possibly today's most overlooked aspect of
securing the enterprise and should be a priority in any organization.
Hackers are concentrating their efforts on web-based applications -
shopping carts, forms, login pages, dynamic content, etc. Web
applications are accessible 24 hours a day, 7 days a week and control
valuable data since they often have direct access to backend data such
as customer databases.
Firewalls, SSL and locked-down servers are futile against web application hacking
Any
defense at network security level will provide no protection against
web application attacks since they are launched on port 80 - which has
to remain open. In addition, web applications are often tailor-made
therefore tested less than off-the-shelf software and are more likely
to have undiscovered vulnerabilities. Acunetix WVS automatically checks your web applications for SQL Injection, XSS & other web vulnerabilities.