A big community called "OWASP - Open Web Application Security Project" releases information about software vulnerabilities for every year. Also you can learn lot of concepts here. Here I have done listing of some security testing tools known, Commercial Tools: IBM Rational AppScan HP QA Inspect HP WebInspect HP Fortify Cenzic Hailstorm OpenSource Tools: WebScarab by OWASP community BurpSuite SkipFish - by Google
Sharing ideas with automation testers and Enjoying the ride...