Skipfish is an active web application security reconnaissance tool. It prepares an interactive sitemap for the targeted site by carrying out a crawl and dictionary-based probes. The resulting map is then annotated with the output from a number of active (but hopefully non-disruptive) security checks. The final report generated by the tool is meant to serve as a foundation for professional web applications security assessments. The tool also provides the summary overviews of document types and issue types found, and an interactive satemap, with nodes discovered through brute-force.”]
Source: https://gbhackers.com/skipfish-web-application-security-scanner/

