Securitycompass Web Application Analysis Tool or SWAAT is a static web application source code analysis tool.
Currently in its beta release, this .Net command-line tool searches through
source code for potential vulnerabilities in the following languages:
* Java and JSP
* ASP.Net
* PHP
Using xml-based signature files, it searches for common functions and
expression which may lead to exploits. We believe that this tool will help
you in your ongoing source code analysis efforts.