Continuous web app security scanning with Netsparker and TeamCity

added by troyhunt
1/12/2011 5:41:31 AM

2 Kicks, 117 Views

Nothing destroys reputation like security holes (I take it Gawker is still fresh in everyone’s minds), and when it comes to web applications, security holes are everywhere. This post looks at integrating the Netsparker security scanner into a TeamCity build to automatically analyse applications after deployment. It generates fantastic reports which are easy to consume and act on. And because it's a TeamCity build, there's a great audit trail of vulnerabilities over time.