Sign Up Login
Resource Center  >  Videos

How to run a security scan using a crawler

Speaker 1: Welcome to Nexploit. In this video, you will learn how to run a security scan with a crawler. Nexploit can crawl your web application to define the attack surface of the target and optimize the selected security tests. For that, you simply need to specify the starting point URL of the target. The crawler will interact with your application and map every entry point it can reach. The collected data is then used by the Nexploit engine to ensure complete coverage of the scan target. Let’s get started. Go to the Nexploit application. In the left pane, select the scans option and click new scan. To create a basic scan with minimal settings, use the default standard setup mode. Alternatively, you can configure extended parameters for a new scan in the advanced setup mode. In this video, we’re using the standard setup mode. The option of scanning a website via automatic crawling is set by default. In the targets field, enter the target host URL. Some hosts may require authorization. In this case, you need to select a running repeater from the dropdown list. The scan, name and project are also defined automatically. That’s it. You’ve completed the setup. Now click smart scan. You can monitor the scan process and check the results on the scans page. Thanks for watching and happy scanning with Nexploit from all of us at NeuraLegion.

 

Testing variance Using Legacy Dast Using Dev-Centric Dast
% of orgs knowingly pushing vulnerable apps & APIs to prod 86% 50%
Time to remediate >Med vulns in prod 280 days <150 days
% of > Med vulns detected in CI, or earlier <5% ~55%
Dev time spent remediating vulns - Up to 60x faster
Happiness level of Engineering & AppSec teams - Significantly improved
Average cost of Data Breach (US) $7.86M $7.86M