Reviews: Nikto, a Web Server Scanner
Source: Zero Security
Nikto is a PERL, open source web server scanner that supports SSL. Based on LibWhisker, it has features that Whisker 1.4 lacks, including proxy support, host authentication, and SSL. Nikto checks for (and if possible attempts to exploit) remote web server vulnerabilities and common mis-configurations. It also looks for outdated software and modules, warns of any version specific problems, and supports scans through proxies (with authentication), host Basic authentication and more. Data is kept in CSV format databases for easy maintenance, and supports the ability to automatically update local databases with current versions on the Nikto web site.
The tool can be downloaded from:
http://www.cirt.net/code/nikto.shtml