The most common and widely used technical vulnerabilities, including the OWASP Top 10 web vulnerabilities are detected by automated scanners. Automated web application security scanners are not equipped to find all kinds of web vulnerabilities, especially logical ones. They do not need the expertise of IT security teams to identify any of these web vulnerabilities. Cloud-based web security scanners work best when they are tuned to include new vulnerabilities and additions to the attack surface based on results of tests and analysis. They tune the scanner continuously to add new attack vectors and vulnerabilities.”]
Source: https://gbhackers.com/automated-web-application-security/

