Using Nikto right

@dragonista said:
@TazWake said:

There aren’t many tools which are the only tool that does a thing.

Clearly ! But I can’t imagine, for instance, doing a good recon on a website without a tool like Gobuster. If not it, then another one that would do the job, or I could create one. In the case of Nikto, i just feel like I’m missing the real value or purpose of it so I was wondering in what typical scenarios you’d say “here’s a good time for Nikto !” :slight_smile:

Isn’t Nikto a vulnerability scanner? It doesn’t fill the same role as wfuzz ffuf or go buster. It’s just looking for known vulnerabilities from what it can find on the web server.