Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
Black Duck, a segment of the Synopsys Software Integrity Group, stands out as a prominent provider of application security testing (AST) solutions. Their extensive array of offerings encompasses tools for static analysis, software composition analysis (SCA), dynamic analysis, and interactive analysis, which assist organizations in detecting and addressing security vulnerabilities throughout the software development life cycle. By streamlining the identification and management of open-source software, Black Duck guarantees adherence to security and licensing regulations. Their solutions are meticulously crafted to enable organizations to foster trust in their software while effectively managing application security, quality, and compliance risks at a pace that aligns with business demands. With Black Duck, businesses are equipped to innovate with security in mind, delivering software solutions confidently and efficiently. Furthermore, their commitment to continuous improvement ensures that clients remain ahead of emerging security challenges in a rapidly evolving technological landscape.
Description
Without access to source code, discover and certify security weaknesses in any product. Any protocol or hardware can be tested with beSTORM. This includes those used in IoT and process control, CANbus-compatible automotive and aerospace. Realtime fuzzing is possible without needing access to the source code. There are no cases to download. One platform, one GUI to use, with more than 250+ pre-built protocol testing modules, and the ability to create custom and proprietary ones. Identify security flaws before deployment. These are the ones that are most commonly discovered by outside actors after release. In your own testing center, certify vendor components and your applications. Software module self-learning and propriety testing. Scalability and customization for all business sizes. Automate the generation and delivery of near infinite attack vectors. Also, document any product failures. Record every pass/fail and manually engineer the exact command that caused each failure.
API Access
Has API
No
API Access
Has API
No
Integrations
Apache Maven
Yes
Bizzy
Yes
Black Duck Mobile Application Security Testing
Yes
C
Yes
C#
Yes
Coverity Static Analysis
Yes
Digital.ai Release
Yes
Gradle
Yes
Java
Yes
Jira Service Management
Yes
Integrations
Apache Maven
No
Bizzy
No
Black Duck Mobile Application Security Testing
No
C
No
C#
No
Coverity Static Analysis
No
Digital.ai Release
No
Gradle
No
Java
No
Jira Service Management
No
Pricing Details
No price information available.
Free Trial
Yes
Free Version
No
Pricing Details
$50,000.00/one-time
Free Trial
Yes
Free Version
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
Yes
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
No
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
Yes
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
Yes
Online Support
Yes
Customer Support
Business Hours
Yes
Live Rep (24/7)
Yes
Online Support
No
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
No
In Person
No
Types of Training
Training Docs
No
Webinars
No
Live Training (Online)
Yes
In Person
Yes
Vendor Details
Company Name
Black Duck
Founded
2002
Country
United States
Website
www.blackduck.com
Vendor Details
Company Name
Beyond Security (Fortra)
Founded
1999
Country
United States
Website
beyondsecurity.com/solutions/bestorm-dynamic-application-security-testing.html
Product Features
IT Asset Management
Asset Tracking
Yes
Audit Management
Yes
Compliance Management
Yes
Configuration Management
No
Contract/License Management
Yes
Cost Tracking
No
Depreciation Management
No
IT Service Management
No
Inventory Management
Yes
Maintenance Management
No
Procurement Management
No
Requisition Management
No
Supplier Management
Yes
License Management
Automatic SKU Recognition
No
Central LM Server
No
Copy Protection
No
History Tracking
Yes
Node Management
No
Online Activation
Yes
Portable License
No
Sarbanes-Oxley Compliance
Yes
Timing Rights
No
Trial License
Yes
Static Application Security Testing (SAST)
Application Security
No
Dashboard
No
Debugging
No
Deployment Management
No
IDE
No
Multi-Language Scanning
No
Real-Time Analytics
No
Source Code Scanning
No
Vulnerability Scanning
No
Product Features
Automated Testing
Hierarchical View
No
Move & Copy
No
Parameterized Testing
No
Requirements-Based Testing
No
Security Testing
Yes
Supports Parallel Execution
No
Test Script Reviews
No
Unicode Compliance
No
Software Testing
Automated Testing
No
Black-Box Testing
No
Dynamic Testing
No
Issue Tracking
No
Manual Testing
No
Quality Assurance Planning
No
Reporting / Analytics
No
Static Testing
No
Test Case Management
No
Variable Testing Methods
No
White-Box Testing
No