TrustRadius: an HG Insights company

Nikto

Score10 out of 10

2 Reviews and Ratings

What is Nikto?

Nikto is an open source fast (not stealthy) vulnerability testing tool that can be used in penetration testing or purple team exercises.

Categories & Use Cases

One of the best web server vulnerability scanner tool

Use Cases and Deployment Scope

It is one of the best open-source command line web server vulnerability scanner tools available in the market as of now. I have been using this tool for the last 7 years It also checks for checking server configuration items such as the presence of multiple index files, and HTTP server options, and will attempt to identify installed web servers and software.

Pros

  • Well known tool
  • Source code available
  • Wweb server vulnerability scanner

Cons

  • Can be made GUI based for ease of users
  • User community should be there
  • Development and support should be available

Most Important Features

  • Identifying common web server vulnerabilities
  • Open source tool
  • Identify outdated servers and programs
  • Not a very costly product

Return on Investment

  • Improved security posture of organisation.
  • Improved in regulatory and corporate compliance.
  • Easy to use result in adaptation of this tool by business users.

Alternatives Considered

Nessus

Other Software Used

Qualys Cloud Platform, Microsoft Teams, Archer Integrated Risk Management Platform