Tag Archives: IAST

AST Tool Evaluation – Key Findings and Limitations of OWASP Benchmark Project

Tools that test code for common vulnerabilities such as OWASP Top Ten fall today in three categories of AST (Application Security Testing) tools: SAST (static code scanning), DAST (dynamic app scan) and IAST (dynamic code scanning). Consequently, there are not … Continue reading

Posted in DAST, IAST, SAST | Tagged , , , | Leave a comment

IAST: A New Approach for Agile Security Testing

Static Application Security Testing (SAST) tools such as Fortify, Veracode, Checkmarx or IBM App Scan Source Edition have been available on the market now for a while. All of them have their specific pros and cons. But there are certain … Continue reading

Posted in IAST, SAST, Security Test Automation | Tagged | 5 Comments

Gartner’s Magic Quadrant for Application Security Testing 2014

One publication that usually became a lot of attention in the application security market is of course Gartner’s magic quadrant. A new one for Application Security Testing (that is confusingly abbreviated with “AST”, a term that in software anylysis usually … Continue reading

Posted in DAST, SAST, Security Test Automation | Tagged , , , | 1 Comment