Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

Black Duck, a segment of the Synopsys Software Integrity Group, stands out as a prominent provider of application security testing (AST) solutions. Their extensive array of offerings encompasses tools for static analysis, software composition analysis (SCA), dynamic analysis, and interactive analysis, which assist organizations in detecting and addressing security vulnerabilities throughout the software development life cycle. By streamlining the identification and management of open-source software, Black Duck guarantees adherence to security and licensing regulations. Their solutions are meticulously crafted to enable organizations to foster trust in their software while effectively managing application security, quality, and compliance risks at a pace that aligns with business demands. With Black Duck, businesses are equipped to innovate with security in mind, delivering software solutions confidently and efficiently. Furthermore, their commitment to continuous improvement ensures that clients remain ahead of emerging security challenges in a rapidly evolving technological landscape.

Description

Supports more than 20 programming languages such as Java, JSP, C/C++, C#, Python, Swift, ASP(.NET), ABAP, and Objective C, among others. Adheres to international security compliance standards and guidelines. Conducts analysis of MVC structures, file associations, and function call relationships at various levels. Implements incremental analysis to reduce analysis time by focusing only on newly added or modified files and their related components. Collaborates with other Sparrow AST solutions like DAST and RASP to uncover correlations between vulnerabilities, enhancing the accuracy of search results. Provides an issue navigator for tracking and monitoring vulnerabilities from their source to the actual code implementation. Offers automated guidance for correcting real source code issues and categorizing vulnerabilities efficiently. Features a dashboard for managing analysis results and statistical data. Centralizes rule management (Checker) utilizing information related to risk levels, options, and additional parameters, ensuring a comprehensive approach to security. Additionally, it enables users to maintain a historical record of vulnerabilities, facilitating better understanding and remediation over time.

API Access

Has API No 

API Access

Has API No 

Screenshots View All

Screenshots View All

Integrations

C Yes 
C# Yes 
C++ Yes 
Java Yes 
Apache Maven Yes 
Bizzy Yes 
Black Duck Mobile Application Security Testing Yes 
Coverity Static Analysis Yes 
Kotlin No 
Logilica Yes 
Longbow Yes 
Maverix Yes 
NorthStar Navigator Yes 
Objective-C No 
Phoenix Security Yes 
Rezilion Yes 
Swift No 
Vulcan Cyber Yes 

Integrations

C Yes 
C# Yes 
C++ Yes 
Java Yes 
Apache Maven No 
Bizzy No 
Black Duck Mobile Application Security Testing No 
Coverity Static Analysis No 
Kotlin Yes 
Logilica No 
Longbow No 
Maverix No 
NorthStar Navigator No 
Objective-C Yes 
Phoenix Security No 
Rezilion No 
Swift Yes 
Vulcan Cyber No 

Pricing Details

No price information available.
Free Trial Yes 
Free Version No 

Pricing Details

one-time payment
Free Trial No 
Free Version No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows Yes 
Mac No 
Linux No 
Chromebook No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Customer Support

Business Hours Yes 
Live Rep (24/7) Yes 
Online Support Yes 

Customer Support

Business Hours No 
Live Rep (24/7) No 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars Yes 
Live Training (Online) No 
In Person No 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person No 

Vendor Details

Company Name

Black Duck

Founded

2002

Country

United States

Website

www.blackduck.com

Vendor Details

Company Name

Sparrow

Founded

2018

Country

South Korea

Website

www.sparrowfasoo.com/en/product/sast

Product Features

IT Asset Management

Asset Tracking Yes 
Audit Management Yes 
Compliance Management Yes 
Configuration Management No 
Contract/License Management Yes 
Cost Tracking No 
Depreciation Management No 
IT Service Management No 
Inventory Management Yes 
Maintenance Management No 
Procurement Management No 
Requisition Management No 
Supplier Management Yes 

License Management

Automatic SKU Recognition No 
Central LM Server No 
Copy Protection No 
History Tracking Yes 
Node Management No 
Online Activation Yes 
Portable License No 
Sarbanes-Oxley Compliance Yes 
Timing Rights No 
Trial License Yes 

Static Application Security Testing (SAST)

Application Security No 
Dashboard No 
Debugging No 
Deployment Management No 
IDE No 
Multi-Language Scanning No 
Real-Time Analytics No 
Source Code Scanning No 
Vulnerability Scanning No 

Product Features

Static Application Security Testing (SAST)

Application Security No 
Dashboard No 
Debugging No 
Deployment Management No 
IDE No 
Multi-Language Scanning No 
Real-Time Analytics No 
Source Code Scanning No 
Vulnerability Scanning No 

Static Code Analysis

Analytics / Reporting No 
Code Standardization / Validation No 
Multiple Programming Language Support No 
Provides Recommendations No 
Standard Security/Industry Libraries No 
Vulnerability Management No 

Alternatives

Revenera SCA Reviews

Revenera SCA

Revenera

Alternatives

Snappytick Reviews

Snappytick

Snappycode Audit
PT Application Inspector Reviews

PT Application Inspector

Positive Technologies