I just recorded a webcast about Jikto, including a demo. I had to fix a number of bugs in the original (and leaked) code. Jikto now properly audits POST requests and flags on XSS and SQL Injection vulns. I also revamped the web interface, and photoshopped the Nikto logo (property of http://cirt.net) into one for Jikto. Here is a screen shot of Jikto. Demo is rendering on my laptop now, and should be up on SPI's website sometime tomorrow |