
The project's short term objectives, which are planned to be achieved in 2009 are:
w3af is much more than a piece of software, w3af is a community that breathes Web Application Security. Our goal has to be to duplicate the amount of community members. Community members start threads in the mailing list, promote w3af in information security conferences, contribute with patches, feature requests and bug reports. Without a supporting community, there is no project.
Right now there is some controversy on which is the best Open Source Web Application Scanner. One of our main short term goals is to become, without a doubt, the best Open Source Web Application Scanner.
One of the advantages of being the first Web Application Exploitation Framework is that you are the best "by default", but the w3af community doesn't have to forget about Metasploit. H D Moore and his crew are building a lot of Web Application exploits, and the architecture to support them. Our goal has to be to develop a stable architecture to support all the exploit types and techniques that could appear in the future.
The project's long term objectives to be achieved in the projects lifetime are: