Have a personal or library account? Click to login
Statistical Analysis of Unique Web Application Vulnerabilities: A Quantitative Assessment of Scanning Tool Efficiency Cover

Statistical Analysis of Unique Web Application Vulnerabilities: A Quantitative Assessment of Scanning Tool Efficiency

Open Access
|Jun 2025

Abstract

Web application security is a critical aspect of modern cybersecurity, necessitating efficient and reliable vulnerability detection mechanisms. This study presents a quantitative analysis of unique web application vulnerabilities detected by four automated scanning tools: Nessus, Acunetix, OWASP ZAP, and BeSECURE. We scanned 67 web applications and sorted the vulnerabilities we found into four categories: Critical, High, Medium, and Low. This study evaluates each tool’s effectiveness and reliability using mean and standard deviation, providing key insights into their performance consistency. Using straightforward statistical methods, we aim to determine which scanning tool performs best in finding vulnerabilities while maintaining consistent results across different web applications. Additionally, the analysis offers comparative insights into the performance variations among these tools, highlighting their strengths and limitations. The study paper contributes to strategic decision-making in cybersecurity, enabling organizations to select the most effective tools for vulnerability assessment. The findings demonstrate that OWASP ZAP exhibits superior detection capabilities and consistency across various severity levels, while integrating tools like Nessus, BeSECURE, and Acunetix enhances vulnerability detection, with Nessus excelling in identifying critical and high-severity vulnerabilities.

Language: English
Page range: 136 - 152
Published on: Jun 30, 2025
Published by: South East European University
In partnership with: Paradigm Publishing Services
Publication frequency: 2 issues per year
Related subjects:

© 2025 Gani Zogaj, Florie Ismaili, Ermira Idrizi, Artan Luma, published by South East European University
This work is licensed under the Creative Commons Attribution 4.0 License.