About Acunetix

Acunetix is a cloud-based digital security solution that assist security analysts with data protection, manual testing and compliance reporting. It is primarily designed to scan websites and identify vulnerabilities that can compromise networks. Key features include site crawling, analysis, threat detection, SQL injection testing, network scanning and testing. Its vulnerability scanner crawls through open-source software and custom-built applications using black box and grey box techniques. With its network security module, users can test routers, firewalls and switches and detect misconfigurations. Acunetix comes with an application programming interface (API) that enables firms to integrate it with their workflows and processes. It if offered on a one-time subscription basis and support is provided via phone and email.
Acunetix Software - Dashboard
Acunetix Software - Installer
Acunetix Software - Scan type selection
Acunetix Software - Dashboard - thumbnail
Acunetix Software - Installer - thumbnail
Acunetix Software - Scan type selection - thumbnail

Acunetix pricing

Acunetix does not have a free version but does offer a free trial.

Starting Price:
Not provided by vendor
Free Version:
No
Free trial:
Yes

Alternatives to Acunetix

Syxsense

Syxsense Manage is a cloud-based IT management and MSP software that allows administrators to configure and access...

Netsparker

Netsparker is a cloud-based and on-premise solution designed to help businesses manage the entire application security...

Orca Security

0
Orca Security is a vulnerability assessment platform that provides businesses with tools to identify potential threats...

Nessus

0
Nessus is a cloud-based solution designed to help businesses identify potential vulnerabilities across the system and...

Cyber Chief

Cyber Chief offers businesses the power to identify and resolve potential vulnerabilities across web applications and...

AppTrana

AppTrana is a website and application security tool, designed to help businesses manage and maintain cloud security...

Acunetix Reviews

Feature rating

Value for Money
4
Functionality
4.5
Ease of Use
4.5
Customer Support
4.5
5 reviews of 32 View all reviews
Will E.
  • Industry: Internet
  • Company size: 11-50 Employees
  • Used Weekly for 2+ years
  • Review Source
Value for Money
5
Features
5
Ease of Use
4
Customer Support
5

5
Reviewed on 21/01/2018

A well priced, cloud based vulnerability scanner

Pros

I can schedule daily, weekly or monthly scans of targets which checks for vulnerabilities in our cloud infrastructure from one control panel. The ability to send different types of reports to various parties, for example a 'Board level' report or 'Developer' report is handy for tailoring content to the audience.

Cons

It perhaps could be improved by adding a section for commenting on how a vulnerability was fixed and a link to a relevant URL to confirm this. Pricing is good for a small amount of targets, but quickly becomes expensive for multiple target locations.

Response from Acunetix

Thank you for your feedback

Replied 27/07/2018
Juho W.
  • Industry: Information Services
  • Company size: 5,001-10,000 Employees
  • Used Daily for 1+ year
  • Review Source
Value for Money
4
Features
4
Ease of Use
5
Customer Support
4

4
Reviewed on 11/03/2019

The guarantee of safety

The only thing about using the Acunetix is takin it seriously and really use the instructions it gives you. The reporting system sends the instructions of providing complete security to your documents and all you have to do is to follow those instructions.

Pros

The unique thing about the program which makes it distinguish among the many other programs of this type is the security system. Overtime you add a document to your profile the program analyzes the risks of the document to be stolen and creates a kind of the special defense for this particular document.
This way, the program not only provides the user with the incredibly convenient service and saves his or her time, but also prevents from losing money and getting stressed. It is hard to imagine a scanner to be that universal. The Acunetix can easily cope with documents of any format and keeps everything you are working with really secure so that the really important documents or the catching fire ideas are totally under your control, there is no need to worry.

Cons

The only inconvenient thing about the Acunetix is something the people call «Overprotection». Once you are signed in the security system is on and covers not only the documents dowloaded to the program, but it also washes every activity you might possibly do in the Internet and regularly sends you the warning alerts about the unsecured websites.

Response from Acunetix

Thank you for your review. Your feedback is very important to us.

Replied 18/03/2019
Verified Reviewer
  • Industry: Computer & Network Security
  • Company size: 11-50 Employees
  • Used Daily for 2+ years
  • Review Source
Value for Money
3
Features
3
Ease of Use
5
Customer Support
4

3
Reviewed on 17/08/2018

Ok tool, but fix your business model and add more settings to the interface

Continuation of the cons section (number of chars was limited).

* Settings are sometimes unclear, an info icon with a popup would be nice.

Example 1: In the "Site Structure" of a scan it is possible to press "exclude", does it exlude the path from futre scans? If so why don't I see anything in the target settings? Or does "exlude" exclude vulnerabilities from the report? BTW after pressing exlude I'm not able to "include" it again.

Example 2: "scan speed", how many threads per setting are we talking about?

* Would definitly like to get some more feedback from scans directly in the interface, what is it doing, why did it fail, did all the "allowed hosts" got scanned etc. I know you can debug a target, but this is not what I mean.

Pros

* The number of checks that take place.

* The quality of the issues found.

* After years it is finally possible to pause a scan, hallelujah.

Cons

* As a pentester I absolutely miss a more flexible way to configure settings like it was possible in v10. The interface is built as "point a shoot", idiot proof. Currently, If I want to configure things I need to change xml config files on the server and reload acunetix...

* After the release of v12 we were called by a sales agent as we suddently couldn't add targets anymore. The license model suddenly changed completely. The entire business model is now based on scanning an applications continuously over the year. However, as a pentesting business for we mostly scan apps just 1 time for our security assessments. It absolutely makes no sense to apply the same costs! Just like Netsparker, acunetix should have plans for pentesters and consultants.

* Scanning an app that spans multiple domains always results in problems. Currently you have the "Allowed hosts" settings which is crappy in setting up. I need to set all (sub) domains to a different target. And ofcourse with the current business model you are charged per target, lol.

Response from Acunetix

Thank you for your honest feedback:

As you rightly say, we try to keep an easy to use interface, with the intention of automatically detecting the best way to scan the site. There are some settings which are not used by most of our customers, and which can be manually tweaked from the settings file.

I think you might have missed the little help icon at the top right corner of the Acunetix interface. When clicked, this provides help on the settings loaded in the current page. But to answer your queries:

Example 1 - When you Exclude a path from the Site Structure, the exclusion will be stored with the Target, and will affect subsequent scans. You can delete the exclusion from the Target settings.

Example 2: this is explained on our website at https://www.acunetix.com/blog/docs/configure-scan-speed-acunetix/. I have forwarded your comment about the scan feedback to the product team.

Regarding licensing, I would suggest that you get in touch with our sales team, who can work

Replied 08/10/2018
Verified Reviewer
  • Industry: Information Technology & Services
  • Company size: 201-500 Employees
  • Used Weekly for 6-12 months
  • Review Source
Value for Money
4
Features
5
Ease of Use
5
Customer Support
5

5
Reviewed on 13/08/2018

Simple, but very powerful web vunlerability scanner

Good thing for a web application pentesting, can give You insight of a present vulnerabilities. Would recommend using in tandem with infrastructure scanner (like Nessus) to create a complete testing solution. Also presence of continous scanning and scheduler could be used for a regular security assesment of Your web applications.

Pros

Ease of use, good customer support, very insightful reports (especially Developer raport), good vulnerability management. Also continous scanning option is an interesting thing for having continous security awareness of Your vulnerability level. Also login sequence recorder is an awesome tool.

Cons

Not a lot of scan options to configure - especially in comparison to Nessus - every check is done in default, You can't choose specifically which test is done in selected scan, only the type of scan (full, high-risk vulnerabilities, xss, sqli, weak passwords, crawl only ) or technology in which the scanned web app is written.

Response from Acunetix

Thank you for your feedback ¿ we¿re glad that Acuneix is working for you.

Regarding your comment about choosing what to scan for ¿ you can already do this in Acunetix, although the feature is slightly hidden away in Settings > Scan Types. Here you can create your own custom Scan Types, and you will be able to choose which vulnerabilities to check for. When creating a new custom Scan Type, you can filter the vulnerability checks from the top right hand corner of the page.

Remember that you can also easily retest for a specific vulnerability identified in a previous scan.

Replied 20/08/2018
Kai M.
  • Industry: Information Technology & Services
  • Company size: 51-200 Employees
  • Used Weekly for 2+ years
  • Review Source
Value for Money
4
Features
4
Ease of Use
4
Customer Support
5

5
Reviewed on 10/08/2018

Acunetix always gives me a very good first impression

Pros

We are using Acunetix now for more than 5 years. It is very easy to create new targets and quickly start automatic scans. The AcuSensor often gives me a good hint where I should take a closer look manually.
Our management likes the well structured reports.

Cons

If a web application is very complex, the scanner sometimes does not really manage to find its path through the process.
Since the application changed to the web gui, it is more complicated to specify pre-recorded login sequence. The user has to log into the server, where Acunetix is hostet and start a different application to record the sequence.

Response from Acunetix

Thank you for your feedback.

We are planning on integrating the Acunetix Login Sequence Recorder in the Acunetix web UI. This will make it easier to record login sequences moving forward. If all goes well, we will have this feature in place by the end of Q3 / beginning Q4 this year.

Replied 20/08/2018

Related categories