Application penetration testing

Subject: Penetration Testing
Topic choosen: Application penetration testing

Question no.3:

a) cross site scripting (Xss)- explain about the attack, editing and add citation.

b) sql injection- explain about the attack, edit and add citation.

Question no.4:

Vurnability assessment tool

a) Wapiti- Edit, sitation,explain about the tools and state how does this tools relate to the vernability method choosen. The choosen vulnability assessment method is Web Application Scanning.

b) Nikto2- edit, sitation, explain about the tool choosen and state how does this tool relate to the vernability method choosen. The choosen vulnability assessment method is Web Services Scanning.

Attack Method Tool

a) Burp Suit- edit, citation, explain about the atrack tool choosen and state how does this attack tool relate to the attack method choosen. The attack method choosen is Cross Site Scripting (XSS).

b) SQLMAP- edit, citation, explain about the attack tool chosen and state how does this attack tool relate to the attack method choosen. The attack method choosen is SQL Injection.

Conclusion: explain