Security Basics mailing list archives

Secure Coding - Static Code Analysis Tools


From: Brad Andrews <andrews () rbacomm com>
Date: Fri, 21 Sep 2007 13:58:16 -0500


Does anyone know if any companies other than Fortify Software and Ounce Labs provide software/systems that will scan source code for code security vulnerabilities, such as those noted in the OWASP Top 10?

I did find a reference to Klockworks, but they seem to be aimed at more traditional code scanning rather than looking for possible security holes.

Any other references to check out would be appreciated.

Brad


Current thread: