| Logo | Vulnerability Scanner | O U N T | E T | O S T | O O K I E | E A D E R | E C R E T | N a m e | M L | m l A T T | m l T A G | S O N | N e t E N C | M F | a v a S E R | N e t S E R | C F | C F - B i n | e b S o c k | W R | u s t o m | ||
| IBM AppScan | 13 | ||||||||||||||||||||||
| WebInspect | 13 | ||||||||||||||||||||||
| Burp Suite Professional | 11 | ||||||||||||||||||||||
| Acunetix WVS (Commercial Edition) | 7 | ||||||||||||||||||||||
| Ammonite | 7 | ||||||||||||||||||||||
| Nessus | 5 | ||||||||||||||||||||||
| NTOSpider (Obsolete Version / Results) | 5 | ||||||||||||||||||||||
| QualysGuard WAS | 5 | ||||||||||||||||||||||
| Netsparker (Commercial Edition) | 4 | ||||||||||||||||||||||
| JSky (Commercial Edition) | 3 | ||||||||||||||||||||||
| Logo | Vulnerability Scanner | O U N T | E T | O S T | O O K I E | E A D E R | E C R E T | N a m e | M L | m l A T T | m l T A G | S O N | N e t E N C | M F | a v a S E R | N e t S E R | C F | C F - B i n | e b S o c k | W R | u s t o m | ||
| ParosPro | 3 | ||||||||||||||||||||||
| Syhunt Dynamic (Sandcat Pro) | 3 | ||||||||||||||||||||||
| WebCruiser Enterprise Edition | 3 |
E T | O S T | O O K I E | E A D E R | E C R E T | N a m e | M L | m l A T T | m l T A G | S O N | N e t E N C | M F | a v a S E R | N e t S E R | C F | C F - B i n | e b S o c k | W R | u s t o m | |
| Scanners: | 13 | 13 | 11 | 9 | 2 | 7 | 6 | 4 | 2 | 6 | 0 | 3 | 0 | 0 | 2 | 1 | 0 | 0 | 3 |
| Alias | General Feature | Description | References |
| GET | HTTP Query String Parameters | Input parameters sent in the URL | 1 |
| POST | HTTP Body Parameters | Input parameters sent in the HTTP body | 1 |
| COOKIE | HTTP Cookie Parameters | Input parameters sent in the HTTP cookie | 1 |
| HEADER | HTTP Headers | HTTP request headers used by the application | 1 |
| SECRET | Secret HTTP Parameters | Non-visible valid HTTP parameters (such as GET to POST, etc) | |
| PName | HTTP Parameter Names | HTTP parameter names used by the application | |
| XML | XML Element Content | The content of XML elements | 1 |
| XmlATT | XML Attributes | XML attributes | 1 |
| XmlTAG | XML Tags | The names of XML tags | 1 |
| JSON | JSON Parameters | Parameters sent in JSON format | 1 |
| .NetENC | .Net PostBack Encoded Parameters | Parameters sent after undergoing .net PostBack encoding | 1 |
| AMF | Flash Action Message Format | Parameters sent in Flash AMF format | 1 |
| JavaSER | Java Serialized Objects | Parameters sent within Java serialized objects | 1 |
| .NetSER | .Net Serialized Objects / Remoting | Parameters sent within .Net serialized objects / remoting | 1 |
| WCF | .Net WCF Objects | Parameters sent in WCF requests | 1 |
| WCF-Bin | .Net Binary WCF Objects | Parameters sent in binary WCF requests | 1 |
| WebSock | HTML5 WebSockets | Direct Socket Browser-Server Communication | 1 |
| DWR | Java Direct Web Remoting | Parameters sent in DWR format | 1 |
| Custom | Custom Input Vector | Support for defining custom input vectors in the HTTP request |