Giter VIP home page Giter VIP logo

webinspectautomation's Introduction

WebInspect Automation

Sample Python script for automating dynamic scanning with WebInspect and pushing results to SSC

  1. Checks for running scans and queues if an existing scan is running
  2. Takes payload.txt file from DefaultFilePath to start scan. The payload.txt file is a JSON definition that defines the scan
  3. Starts scan saving scan ID for generating results
  4. Watches for scan to complete
  5. Pulls scan as txt, .scan, and .fpr
  6. Uploads FPR to SSC

Requirements

  1. WebInspect 18.2+
  2. Python 3.7
  3. SSC 18.2+
  4. Fortifyclient utility 18.2+

Sample Command

WebInspectAutomation.py BaseUrl http://WebInspectMachine:8083/webinspect/ DefaultFilePath "C:\DefaultFilePath" SSCUrl http://SSCServer:8080/ssc SSCAuthToken AuthTokenFromSSC ApplicationVersionID SSCAppVersionID ScanMode Payload

To Do

  1. Port to Java
  2. Incremental scanning support with merge
  3. URL scan mode
  4. Scan settings mode

webinspectautomation's People

Contributors

ebell451 avatar shawnmsimpson avatar zrick1234 avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar

webinspectautomation's Issues

Input issue

Hi team
I am new to python and webinspect
I am trying the code please help me on what input i need to provide in scanmode

Python hello.py crawlandaudit c://user http://locahost

Query

What we need to give in the scanmode
In 89 line i am getting the payload not defined how to define and where we need to define

Please help
Thanks in advance

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.