OraScan
OraScan is a multi–environment auditing application developed to assess the security of Oracle Web applications. The finely detailed level of auditing supported by OraScan allows systems administrators and security professionals to gain full control of security issues surrounding online applications and front-end servers.
OraScan performs robust, in–depth security vulnerability audits, seeking out potential problem areas such as:
- SQL Injection
- Cross–Site Scripting
- Poor Web Server configuration
In addition, OraScan can be deployed to audit the configuration of IAS Web Servers, ensuring that the web application portion of your database software architecture is free of any security weaknesses.
Flexible Auditing – capable of auditing bespoke Oracle Web applications whether they are deployed on an Oracle Internet Application Server, or any other Web Server
Complete Automation – front–end server security and online applications
Configuration Audits – ensures that no security holes exist within the base software (includes PL/SQL, JSP, SQLJSP and XSQL)
Advance Spidering – derives the structure of an Oracle Web application and employs tests to each functional aspect
Flexible Reporting – Text File, XML and HTML (Static or Dynamic)
OraScan can be used with the following operating systems:
Microsoft Windows 2003, Microsoft Windows 2000, Microsoft Windows XP, Microsoft Windows NT Version 4.0 (Service Pack 4)
Computer Specification:
Minimum Pentium III or Athlon at 1GHz (Pentium 4 at 2Ghz or Athlon XP 2000+ recommended)
Minimum 256Mb Ram (512Mb+ recommended)
20Mb free disk space for installation and program files.


