Ratings and Reviews 0 Ratings

Total
ease
features
design
support

This software has no reviews. Be the first to write a review.

Write a Review

Ratings and Reviews 1 Rating

Total
ease
features
design
support

Alternatives to Consider

  • Aikido Security Reviews & Ratings
    239 Ratings
    Company Website
  • Rocket z/Assure VAP Reviews & Ratings
    1 Rating
    Company Website
  • Astra Pentest Reviews & Ratings
    295 Ratings
    Company Website
  • Parasoft Reviews & Ratings
    152 Ratings
    Company Website
  • Criminal IP ASM Reviews & Ratings
    21 Ratings
    Company Website
  • Gearset Reviews & Ratings
    305 Ratings
    Company Website
  • StackAI Reviews & Ratings
    54 Ratings
    Company Website
  • New Relic Reviews & Ratings
    2,938 Ratings
    Company Website
  • Orca Security Reviews & Ratings
    606 Ratings
    Company Website
  • MuukTest Reviews & Ratings
    34 Ratings
    Company Website

What is StackHawk?

StackHawk inspects your ongoing applications, services, and APIs for potential security issues that may arise from your development team, along with vulnerabilities in open-source components that could be at risk of exploitation. In the current engineering environment, it has become commonplace to integrate automated testing suites within CI/CD frameworks. Therefore, it begs the question: why shouldn't application security adapt in a similar manner? StackHawk is tailored to uncover vulnerabilities directly within your development workflow. The motto "built for developers" captures the essence of StackHawk, highlighting the need to weave security seamlessly into the development lifecycle. As the landscape of application security progresses to match the fast pace of contemporary engineering teams, it is crucial for developers to have access to tools that facilitate the assessment and resolution of security vulnerabilities. With StackHawk, security measures can evolve alongside development efforts, enabling teams to identify vulnerabilities during pull requests and address them promptly, in contrast to traditional security solutions that often delay action until after manual scans are performed. This tool not only fulfills the requirements of developers but is also supported by the most widely utilized open-source security scanner, making it a preferred choice among users. Ultimately, StackHawk empowers developers to fully integrate security into their routine tasks, fostering a culture of proactive risk management within their projects. Additionally, this allows organizations to enhance their overall security posture while maintaining efficiency in their development processes.

What is Invicti Web + API?

Invicti Web + API, formerly Acunetix, is a dynamic application security testing platform designed to automate vulnerability discovery, validation, prioritization, and remediation workflows for web applications and APIs. The product builds on more than 20 years of Acunetix DAST technology while incorporating AI, code-to-runtime correlation, and vulnerability management capabilities. Invicti can automatically identify web applications, APIs, shadow assets, unlinked pages, and undocumented endpoints across code, traffic, and runtime environments. Its scanning engine detects more than 7,000 security issues, including vulnerabilities from the OWASP Top 10 and OWASP API Top 10 as well as business logic flaws. The platform supports modern single-page applications, JavaScript-heavy websites, LLM-powered services, role-based authentication scenarios, complex multi-step workflows, and stateful API testing. API security testing covers REST, GraphQL, and SOAP services while maintaining context across requests. Invicti uses AI-driven risk scoring based on more than 200 signals together with runtime reachability, exploitability, and business context to help teams prioritize security findings. Proof-based validation confirms exploitable vulnerabilities to reduce false positives, with Invicti reporting 99.98% confirmation accuracy for exploitable findings. DAST-to-SAST correlation connects runtime vulnerabilities with corresponding source code, while AI-powered remediation delivers developer-oriented fix guidance and automated validation can retest applications after changes are implemented. Invicti also provides agentic penetration testing capabilities that coordinate specialized AI agents, adapt attack plans to application behavior, investigate chained and contextual vulnerabilities, and validate findings using its proof-based techniques.

Media

Media

Integrations Supported

GitHub
Jenkins
Jira
Azure Pipelines
Claude Code
Concourse CI
Microsoft Teams
Tromzo

Integrations Supported

GitHub
Jenkins
Jira
ArmorCode
Axonius
Bizzy
Centraleyezer
Dradis
Flexagon
Imperva DDoS Protection
Imperva WAF
NAVEX IRM
Nucleus
WordPress

API Availability

Has API

API Availability

Has API

Pricing Information

$99 per month
Free Version
Free Trial Offered?

Pricing Information

Pricing not provided
Free Trial Offered?

Supported Platforms

SaaS

Supported Platforms

SaaS
Windows
On-Prem
Linux

Customer Service / Support

Web-Based Support

Customer Service / Support

Standard Support
24 Hour Support
Web-Based Support

Training Options

Documentation Hub
Online Training
On-Site Training

Training Options

Documentation Hub
Webinars
Online Training

Company Facts

Organization Name

StackHawk

Date Founded

2019

Company Location

United States

Company Website

www.stackhawk.com

Company Facts

Organization Name

Invicti Security

Date Founded

2018

Company Location

United States

Company Website

acunetix.com

Categories and Features

Categories and Features

Application Security

Analytics / Reporting
Third-Party Tools Integration
Training Resources
Vulnerability Detection
Vulnerability Remediation

Computer Security

Audit Trail
Compliance Management
Database Security Audit
File Access Control
Vulnerability Protection

Cybersecurity

IOC Verification
Vulnerability Scanning

IP Scanners

Not specified

IT Security

Vulnerability Scanning
Web Threat Management

Network Security

Threat Response
Vulnerability Scanning

Penetration Testing

Not specified

Vulnerability Management

Asset Discovery
Asset Tagging
Network Scanning
Prioritization
Risk Management
Vulnerability Assessment
Web Scanning

Vulnerability Scanners

Asset Discovery
Black Box Scanning
Compliance Monitoring
Continuous Monitoring
Defect Tracking
Interactive Scanning
Logging and Reporting
Network Mapping
Perimeter Scanning
Risk Analysis
Threat Intelligence
Web Inspection

Website Security

Not specified

Popular Alternatives

Invicti Web + API Reviews & Ratings

Invicti Web + API

Invicti Security

Popular Alternatives

Astra Pentest Reviews & Ratings

Astra Pentest

Astra Security
AppTrana Reviews & Ratings

AppTrana

Indusface
Invicti Reviews & Ratings

Invicti

Invicti Security