Acunetix by Invicti vs. Indusface Web Application Scanning

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Acunetix by Invicti
Score 8.0 out of 10
N/A
AcuSensor from Maltese company Acunetix is application security and testing software.
$4,500
Indusface WAS
Score 9.0 out of 10
N/A
Indusface Web Application Scanner provides an application security audit to detect a range of high-risk Vulnerabilities, Malware, and Critical CVEs.
$59
per month
Pricing
Acunetix by InvictiIndusface Web Application Scanning
Editions & Modules
Websites Scanned: 5
4,500
Websites Scanned: 6-10
7,200
Websites Scanned: 11-20
10,800
Websites Scanned: 21-35
22,540
Websites Scanned: 36-50
26,600
Websites Scanned: Over 50
Contact for quote
Advance - Comprehensive Risk Detection
$59
per month
Premium - Managed Risk Detection
$2388
per month
Basic Risk Detection
Free
Offerings
Pricing Offerings
Acunetix by InvictiIndusface WAS
Free Trial
YesYes
Free/Freemium Version
NoYes
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Acunetix by InvictiIndusface Web Application Scanning
Considered Both Products
Acunetix by Invicti
Chose Acunetix by Invicti
In my opinion Acunetix fares good in DevSecOps pipeline better than Appspider. In terms of vulnerabilities scanning of dynamic applications I liked Rapid7, however we have better ROI with Acunetix. During 6 months of usage I tried to look into cost benefit analysis and could …
Chose Acunetix by Invicti
ZAP is a free tool, and adequate. But it is to that extent less friendly. I would not be as confident of the results and it definitely can't produce reports on par with Acunetix. There would be a lot of legwork on our end if we desired to switch to this tool.
Chose Acunetix by Invicti
Every year, we re-evaluate the tools we are using and licensing. We balance the ever-changing vendor licensing-models, costs, tool features/usability, etc. For the last few years, this has been the best overall commercial tool for our specific use case. However, this is only …
Indusface WAS
Chose Indusface WAS
The report you send the format and detailing the report , easily identify the vulnerability of the website, executive report is also the proper formatted it very useful
Best Alternatives
Acunetix by InvictiIndusface Web Application Scanning
Small Businesses
GitLab
GitLab
Score 8.7 out of 10
GitLab
GitLab
Score 8.7 out of 10
Medium-sized Companies
Veracode
Veracode
Score 8.7 out of 10
Veracode
Veracode
Score 8.7 out of 10
Enterprises
Veracode
Veracode
Score 8.7 out of 10
Veracode
Veracode
Score 8.7 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Acunetix by InvictiIndusface Web Application Scanning
Likelihood to Recommend
9.0
(0 ratings)
9.0
(0 ratings)
User Testimonials
Acunetix by InvictiIndusface Web Application Scanning
Likelihood to Recommend
Acunetix scales well from a small web development presence like ours to a full-scale enterprise focused on that. The various tools and sensors that provide assurance of the results and can give feedback down to the lines of code in the source are proof of this. Various integrations exist as well. The main thing for us is that it simplifies confirming and remediating potential issues in our code or proving that products we use have issues that we can then take to the vendor for correction.
Read full review
I like to know what digital assets I have, where I have them and what the status is at any given time. detecting state changes in real-time is a critical security challenge. Traditional EDR/XDR products are not suitable for the intended purpose due to signature-based methodologies' inability to detect or prevent malicious activity. I like the presentation of the product, it's very effective and engaging. Not having to respond to countless false positives is worth it's weight in gold.
Read full review
Pros
  • Integration of tool with different IDE is great
  • Easy to scan code and identify vulnerabilities
  • Dashboard is easy to customise
Read full review
No answers on this topic
Cons
  • Does not support multiple endpoints well (e.g. apps and services that do not reside at the same URL).
  • Has authentication problems with modern enterprise apps which involve a lot of redirects to unrelated endpoints, federated IDs, SSO, etc. This is related to the first point.
  • The vulnerability detection capability is not as robust as Burp Suite Pro + extensions, Metasploit + auxiliary modules, Nmap + scripts, etc.
Read full review
No answers on this topic
Alternatives Considered
In my opinion Acunetix fares good in DevSecOps pipeline better than Appspider. In terms of vulnerabilities scanning of dynamic applications I liked Rapid7, however we have better ROI with Acunetix. During 6 months of usage I tried to look into cost benefit analysis and could easily pick Acunetix and in terms of dashboards also I am impressed
Read full review
The report you send the format and detailing the report , easily identify the vulnerability of the website, executive report is also the proper formatted it very useful
Read full review
Return on Investment
  • Saved money compared to other commercial scanners, especially over the long run.
  • Scan speed seems to be pretty good compared to some of the bulkier commercial products out there. However, that largely has to do with proper configuration.
  • A downside is that is requires a bit of extra work just to get it set up to scan APIs, web services, etc.
Read full review
No answers on this topic
ScreenShots

Acunetix by Invicti Screenshots

Screenshot of DashboardScreenshot of FilteringScreenshot of scan results

Indusface WAS Screenshots

Screenshot of Indusface WAS - Site Health SummaryScreenshot of Indusface WAS - DashboardScreenshot of Indusface WAS - Malware MonitoringScreenshot of Indusface WAS - Application Audit