Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
DerScanner is a user-friendly, officially CWE-Compatible tool that integrates the functionalities of static application security testing (SAST), dynamic application security testing (DAST), and software composition analysis (SCA) within a single platform. This solution significantly enhances oversight of application and information system security, allowing users to assess both proprietary and open-source code seamlessly. By correlating findings from SAST and DAST, it enables the verification and prioritization of vulnerability remediation. Users can bolster their code integrity by addressing weaknesses in both their own and third-party software components. Moreover, it facilitates an impartial code review process through application analysis that is independent of developers. This tool effectively identifies vulnerabilities and undocumented features throughout all phases of the software development lifecycle. Additionally, it allows for oversight of both in-house and external developers while ensuring the security of legacy applications. Ultimately, DerScanner aims to improve user experience by delivering a well-functioning and secure application that meets modern security demands. With its comprehensive approach, organizations can feel confident in their software's resilience against threats.
Description
The YAG Suite is a French-made innovative tool that takes SAST to the next level. YAGAAN is a combination of static analysis and machine-learning. It offers customers more than a sourcecode scanner. It also offers a smart suite to support application security audits and security and privacy through DevSecOps design processes. The YAG-Suite supports developers in understanding the vulnerability causes and consequences. It goes beyond traditional vulnerability detection. Its contextual remediation helps them to quickly fix the problem and improve their secure coding skills. YAG-Suite's unique 'code mining' allows for security investigations of unknown applications. It maps all relevant security mechanisms and provides querying capabilities to search out 0-days and other non-automatically detectable risks. PHP, Java and Python are currently supported. Next languages in roadmap are JS, C and C++.
API Access
Has API
No
API Access
Has API
Yes
Screenshots View All
No images available
Integrations
Eclipse IDE
No
GitHub
No
GitLab
No
Jenkins
No
Python
No
Visual Studio Code
No
Integrations
Eclipse IDE
Yes
GitHub
Yes
GitLab
Yes
Jenkins
Yes
Python
Yes
Visual Studio Code
Yes
Pricing Details
$500 USD
Free Trial
Yes
Free Version
No
Pricing Details
From €500/token or €150/mo
Subscription: SaaS from €150/month/100kLoc
On premise from €215/month/100kLoc
Subscriptions are based on the number of lines of code to scan, no limit on the number of scans / users / projects.
Tokens are valid for per application
On premise from €215/month/100kLoc
Subscriptions are based on the number of lines of code to scan, no limit on the number of scans / users / projects.
Tokens are valid for per application
Free Trial
Yes
Free Version
Yes
Deployment
Web-Based
Yes
On-Premises
Yes
iPhone App
No
iPad App
No
Android App
No
Windows
Yes
Mac
Yes
Linux
Yes
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
Yes
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
No
Customer Support
Business Hours
No
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
Yes
In Person
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
Yes
In Person
No
Vendor Details
Company Name
DerSecur
Founded
2011
Country
Israel
Website
derscanner.com
Vendor Details
Company Name
YAGAAN
Founded
2017
Country
France
Website
yagaan.com
Product Features
Application Security
Analytics / Reporting
No
Open Source Component Monitoring
No
Source Code Analysis
No
Third-Party Tools Integration
No
Training Resources
No
Vulnerability Detection
No
Vulnerability Remediation
No
Static Application Security Testing (SAST)
Application Security
No
Dashboard
No
Debugging
No
Deployment Management
No
IDE
No
Multi-Language Scanning
No
Real-Time Analytics
No
Source Code Scanning
No
Vulnerability Scanning
No
Product Features
Static Application Security Testing (SAST)
Application Security
Yes
Dashboard
Yes
Debugging
No
Deployment Management
No
IDE
Yes
Multi-Language Scanning
Yes
Real-Time Analytics
No
Source Code Scanning
Yes
Vulnerability Scanning
Yes
Static Code Analysis
Analytics / Reporting
Yes
Code Standardization / Validation
Yes
Multiple Programming Language Support
Yes
Provides Recommendations
Yes
Standard Security/Industry Libraries
Yes
Vulnerability Management
Yes
Vulnerability Scanners
Asset Discovery
No
Black Box Scanning
No
Compliance Monitoring
No
Continuous Monitoring
No
Defect Tracking
No
Interactive Scanning
No
Logging and Reporting
No
Network Mapping
No
Perimeter Scanning
No
Risk Analysis
No
Threat Intelligence
No
Web Inspection
No