Research Article

Performance-Based Comparative Assessment of Open Source Web Vulnerability Scanners

Table 5

Scanners’ detection accuracy of SQL attacks.

Scanner Version TPR TNR FPR FNR PPV NPV FOR Accuracy -measure

Arachni 0.4.3 99.26% 80% 20% 0.74% 98.53% 88.89% 11.11% 97.93% 98.89%
Arachni 1.0.2 100% 100% 0% 0% 100% 100% 0% 100% 100%
Wapiti 2.3.0 97.04% 80% 20% 2.96% 98.50% 66.67% 33.33% 95.86% 97.76%
Skipfish 2.1 77.04% 100% 0% 22.96% 100% 24.39% 75.61% 78.62% 87.03%