Join or Log In

Application Security

Browse 171 cybersecurity tools tagged with "Application Security"

DerSecur Software Composition Analysis (SCA)

DerSecur Software Composition

language

Risk Assessment

DerSecur Software Composition Analysis (SCA) on SecurityListing: SCA tool for SBOM generation, dependency analysis, and open-source risk mgmt.

4.8(3)
Miggo WAF Copilot

Miggo WAF Copilot

language

API Security

Miggo WAF Copilot on SecurityListing: AI-powered WAF rule automation for instant vulnerability protection

4.8(3)
Offensive 360

Offensive 360

language

API Security

Offensive 360 on SecurityListing: SAST tool using virtual compilers to analyze source code for vulnerabilities

4.8(3)
Hacksplaining

Hacksplaining

language

Secure Code Training

Hacksplaining on SecurityListing: Comprehensive security training platform for web developers, offering hands-on experience with real, vulnerable applications and concrete advice for securing code.

4.7(2)
DeepSource SAST

DeepSource SAST

language

Security Scanning

DeepSource SAST on SecurityListing: SAST engine that scans code commits for security vulnerabilities

4.7(2)
Invicti Software Composition Analysis

Invicti Software Composition

language

Vulnerability Assessment

Invicti Software Composition Analysis on SecurityListing: SCA tool with proof-based validation and runtime analysis for open-source risks

4.7(2)
Citrix NetScaler

Citrix NetScaler

language

API Security

Citrix NetScaler on SecurityListing: Application delivery controller for optimizing app performance and security

4.7(2)
Flyingduck Software Composition Analysis

Flyingduck Software Composition

language

API Security

Flyingduck Software Composition Analysis on SecurityListing: SCA tool for identifying & resolving vulnerabilities in dependencies

4.7(2)
Delphos Labs Analyze

Delphos Labs Analyze

language

Static Application Security Testing

Delphos Labs Analyze on SecurityListing: AI-powered reverse engineering tool for analyzing compiled binaries

4.7(2)
Miggo Security Observability

Miggo Security Observability

language

API Security

Miggo Security Observability on SecurityListing: Runtime app security observability platform with attack path detection

4.7(2)
Conviso AppScan

Conviso AppScan

language

Container Security

Conviso AppScan on SecurityListing: Orchestrates and centralizes app security testing results from multiple scanners

4.7(2)
Acunetix Vulnerability Scanner

Acunetix Vulnerability Scanner

language

Vulnerability Assessment

Acunetix Vulnerability Scanner on SecurityListing: A comprehensive web application security testing solution that offers built-in vulnerability assessment and management, as well as integration options with popular software development tools.

4.7(2)
N-Stalker

N-Stalker

language

Dynamic Application Security Testing

N-Stalker on SecurityListing: A web security tool that scans for vulnerabilities and known attacks.

4.7(2)
Anchore Enterprise

Anchore Enterprise

language

Container Security

Anchore Enterprise on SecurityListing: Anchore Enterprise is a platform that protects and secures software supply chains end-to-end.

4.7(2)
ISE Vulnerability Assessment Services

ISE Vulnerability Assessment

language

Penetration Testing

ISE Vulnerability Assessment Services on SecurityListing: Manual vulnerability assessment services with custom exploit development

4.7(2)
Caido

Caido

language

Dynamic Application Security Testing

Caido on SecurityListing: A lightweight web security auditing toolkit that simplifies security tasks and enhances productivity.

4.7(2)
BoostSecurity Continuous AppSec Testing

BoostSecurity Continuous AppSec

language

Container Security

BoostSecurity Continuous AppSec Testing on SecurityListing: Continuous AppSec testing platform with zero-touch provisioning for CI/CD

4.7(2)
Ossprey

Ossprey

language

Threat Intelligence Platforms

Ossprey on SecurityListing: Ossprey is a software supply chain security platform that uses AI-powered scanning to detect malicious open source code and prevent supply chain attacks through automated policy enforcement and dependency analysis.

4.5(3)
Conviso Platform

Conviso Platform

language

Penetration Testing

Conviso Platform on SecurityListing: AppSec platform for managing application security posture with consulting services

4.5(3)
BoostSecurity Software Supply Chain Protection

BoostSecurity Software Supply

language

Software Composition Analysis

BoostSecurity Software Supply Chain Protection on SecurityListing: Software supply chain security platform for SDLC infrastructure protection

4.5(3)
Heeler Response Orchestration

Heeler Response Orchestration

language

Application Security Posture Management

Heeler Response Orchestration on SecurityListing: Automates vulnerability remediation workflows between security and dev teams

4.5(3)
DARPA Bin2Math

DARPA Bin2Math

language

Static Application Security Testing

DARPA Bin2Math on SecurityListing: Extracts mathematical algorithms from binary programs for CPS analysis.

4.5(3)
Miggo Prove Next-Gen Runtime Vulnerability Prioritization

Miggo Prove Next-Gen

language

Application Security Posture Management

Miggo Prove Next-Gen Runtime Vulnerability Prioritization on SecurityListing: Runtime vulnerability prioritization using code execution and attack path analysis

4.5(1)
Offensive 360 O360

Offensive 360 O360

language

Static Application Security Testing

Offensive 360 O360 on SecurityListing: SAST tool using virtual compilers to analyze source code for vulnerabilities

4.5(1)
Operant Cloud Application Detection and Response

Operant Cloud Application

language

API Security

Operant Cloud Application Detection and Response on SecurityListing: Runtime CADR platform for API security, K8s protection, and L7+ visibility

4.5(1)
Plexicus ASPM

Plexicus ASPM

language

API Security

Plexicus ASPM on SecurityListing: ASPM platform with automated remediation for code, dependencies, IaC, and APIs

4.5(1)
F5 NGINX App Protect

F5 NGINX App

language

API Security

F5 NGINX App Protect on SecurityListing: A lightweight web application firewall that protects modern applications and APIs across distributed architectures with integrated DoS protection, bot defense, and DevOps-friendly deployment options.

4.5(1)
Vidoc Security

Vidoc Security

language

Static Application Security Testing

Vidoc Security on SecurityListing: VIDOC is an AI-powered security tool that automates code review, detects and fixes vulnerabilities, and monitors external security, ensuring the integrity of both human-written and AI-generated code in software development pipelines.

4.5(1)
Paros

Paros

language

Vulnerability Assessment

Paros on SecurityListing: A Java based HTTP/HTTPS proxy for assessing web application vulnerability with various useful features.

4.5(1)
Phylum

Phylum

language

Software Composition Analysis

Phylum on SecurityListing: Identifies 137 malicious npm packages and gathers system information to a remote server.

4.5(1)
The Matasano Crypto Challenges

The Matasano Crypto

language

Secure Code Training

The Matasano Crypto Challenges on SecurityListing: A set of 48 practical programming exercises in cryptography and application security

4.5(1)
Dynatrace

Dynatrace

language

Security Information and Event Management

Dynatrace on SecurityListing: Unified observability and security platform with AI-powered analytics

4.5(1)
MatosSphere Software Composition Analysis

MatosSphere Software Composition

language

Container Security

MatosSphere Software Composition Analysis on SecurityListing: SCA tool for detecting vulnerabilities & license risks in open-source deps

4.5(1)
Penta Security WAPPLES

Penta Security WAPPLES

language

API Security

Penta Security WAPPLES on SecurityListing: Web application firewall protecting enterprise web apps and APIs

4.5(1)
OctoXLabs CAASM

OctoXLabs CAASM

language

Risk Assessment

OctoXLabs CAASM on SecurityListing: CAASM platform for asset discovery, vulnerability mgmt, and inventory tracking

4.5(1)
App Detonator

App Detonator

language

Mobile App Security

App Detonator on SecurityListing: A tool for dynamic analysis of mobile applications in a controlled environment.

4.5(1)
class-dump

class-dump

language

Mobile App Security

class-dump on SecurityListing: A command-line utility for examining Objective-C runtime information in Mach-O files and generating class declarations.

4.5(1)
Boman.ai AppSec Tool

Boman.ai AppSec Tool

language

Dynamic Application Security Testing

Boman.ai AppSec Tool on SecurityListing: ASPM platform for monitoring, prioritizing, and remediating risks across SDLC

4.5(1)
Huawei MDM Security

Huawei MDM Security

language

VPN

Huawei MDM Security on SecurityListing: Enterprise mobile device & app management platform for BYOD, COPE, and COBO

4.5(1)
F5 BIG-IP Advanced WAF

F5 BIG-IP Advanced

language

API Security

F5 BIG-IP Advanced WAF on SecurityListing: WAF protecting apps and APIs from attacks, bots, and OWASP Top 10 threats

4.5(1)
Ammune API Discovery

Ammune API Discovery

language

API Security

Ammune API Discovery on SecurityListing: API security platform with discovery, WAF, bot protection, and DDoS defense

4.5(1)
FossID Software Composition Analysis

FossID Software Composition

language

Software Composition Analysis

FossID Software Composition Analysis on SecurityListing: SCA tool for code scanning, license identification, and SBOM generation

4.5(1)
Heeler ASPM

Heeler ASPM

language

Dynamic Application Security Testing

Heeler ASPM on SecurityListing: ASPM platform that correlates security findings and reduces alert noise by 99%

4.5(1)
Kodem C.O.R.E.

Kodem C.O.R.E.

language

Container Security

Kodem C.O.R.E. on SecurityListing: Unified engine correlating static & runtime analysis for app security

4.5(1)
Impart

Impart

language

API Security

Impart on SecurityListing: A web application firewall and API security platform that combines API discovery, runtime protection, vulnerability testing, and security posture management.

4.5(1)
DeepSource SCA

DeepSource SCA

language

Software Composition Analysis

DeepSource SCA on SecurityListing: SCA platform with reachability analysis, AI-powered fixes, and license compliance

4.5(1)
StepSecurity

StepSecurity

language

Application Security Posture Management

StepSecurity on SecurityListing: StepSecurity is a platform that enhances GitHub Actions security by providing network egress control, risk discovery, action replacement, and security best practices orchestration.

4.5(1)
Flyingduck Secure Every Commit

Flyingduck Secure Every

language

Software Composition Analysis

Flyingduck Secure Every Commit on SecurityListing: Commit-level code security scanning for vulnerabilities, secrets, and licenses

4.5(1)
Jsmon 2.0

Jsmon 2.0

language

API Security

Jsmon 2.0 on SecurityListing: JavaScript security scanner for detecting vulnerabilities in third-party scripts

4.5(1)
Strobes ASPM

Strobes ASPM

language

Penetration Testing

Strobes ASPM on SecurityListing: A threat exposure management platform that unifies security operations by discovering assets, prioritizing vulnerabilities based on risk, and providing guided remediation across an organization's attack surface.

4.5(1)
Heeler Runtime, Fixability-First SCA

Heeler Runtime, Fixability-First

language

Threat Intelligence Platforms

Heeler Runtime, Fixability-First SCA on SecurityListing: Runtime SCA tool prioritizing fixable & exploitable open-source vulnerabilities

4.5(1)
F5 BIG-IP Local Traffic Manager

F5 BIG-IP Local

language

Next-Generation Firewalls

F5 BIG-IP Local Traffic Manager on SecurityListing: Application delivery controller with load balancing and traffic management

4.5(1)
SearchCode

SearchCode

language

Static Application Security Testing

SearchCode on SecurityListing: SearchCode is an extensive code search engine that indexes 75 billion lines of code from millions of projects to help developers find coding examples and libraries.

4.5(1)
DeepSource IaC Security

DeepSource IaC Security

language

Security Scanning

DeepSource IaC Security on SecurityListing: IaC security scanner that detects misconfigurations in infrastructure code

4.5(1)
Arnica

Arnica

language

Static Application Security Testing

Arnica on SecurityListing: Arnica is an application security platform that offers real-time scanning, risk mitigation, and management across various aspects of the software development lifecycle.

4.5(1)
Miggo Security

Miggo Security

language

Dynamic Application Security Testing

Miggo Security on SecurityListing: Application monitoring and security platform that provides runtime visibility, threat detection, and automated response capabilities for application-layer security

4.5(1)
Cequence CQAI

Cequence CQAI

language

API Security

Cequence CQAI on SecurityListing: AI-powered API threat detection using behavioral fingerprinting & threat intel

4.5(1)
Finite State Platform

Finite State Platform

language

Software Composition Analysis

Finite State Platform on SecurityListing: Platform for vulnerability detection in firmware, binaries, and SBOMs

4.5(1)
GuardRails

GuardRails

language

Dynamic Application Security Testing

GuardRails on SecurityListing: DevSecOps platform for vulnerability detection and developer security training

4.5(1)
Raven Runtime Prevention

Raven Runtime Prevention

language

Software Composition Analysis

Raven Runtime Prevention on SecurityListing: Runtime protection preventing supply-chain attacks & exploits via library-level policies

4.5(1)
Qualys Web Application Scanning (WAS)

Qualys Web Application

language

Security Scanning

Qualys Web Application Scanning (WAS) on SecurityListing: A cloud-based DAST solution that discovers, inventories, and tests web applications and APIs for security vulnerabilities across diverse environments.

4.5(1)
DigitSec Automated Application Security Testing

DigitSec Automated Application

language

Dynamic Application Security Testing

DigitSec Automated Application Security Testing on SecurityListing: Automated app security testing platform for Salesforce and B2C Commerce

4.5(1)
PortSwigger

PortSwigger

language

Penetration Testing

PortSwigger on SecurityListing: A comprehensive toolkit for web application security testing, offering a range of products and solutions for identifying vulnerabilities and improving security posture.

4.5(1)
DerSecur DerScanner

DerSecur DerScanner

language

Static Application Security Testing

DerSecur DerScanner on SecurityListing: SAST tool that scans source code and binaries for security vulnerabilities

4.5(1)
Ghost Security Exorcist

Ghost Security Exorcist

language

API Security

Ghost Security Exorcist on SecurityListing: AI-driven code analysis tool for API discovery and vulnerability detection

4.5(1)
Entropy Source Evaluation

Entropy Source Evaluation

language

Static Application Security Testing

Entropy Source Evaluation on SecurityListing: Using high-quality entropy sources for CSPRNG seeding is crucial for security.

4.3(2)
Layer Seven Security Cybersecurity Extension for SAP Solutions

Layer Seven Security

language

Application Security Posture Management

Layer Seven Security Cybersecurity Extension for SAP Solutions on SecurityListing: Cybersecurity protection platform for SAP systems including S/4HANA and HANA

4.3(2)
Akto Agentic AI Security Benchmark 2025

Akto Agentic AI

language

API Security

Akto Agentic AI Security Benchmark 2025 on SecurityListing: AI-powered API security platform for discovery, testing, and protection

4.3(2)
BoostSecurity Secrets Detection

BoostSecurity Secrets Detection

language

Container Security

BoostSecurity Secrets Detection on SecurityListing: Scans source code and containers for 130+ types of hardcoded secrets

4.3(2)
Endor Labs Application Security

Endor Labs Application

language

Software Composition Analysis

Endor Labs Application Security on SecurityListing: AI-powered AppSec platform for code, dependencies, and container security

4.3(2)
Equixly The Agentic AI Hacker

Equixly The Agentic

language

API Security

Equixly The Agentic AI Hacker on SecurityListing: AI-powered API security testing platform for continuous vulnerability scanning

4.3(2)
Operant AI API Threat Protection

Operant AI API

language

API Security

Operant AI API Threat Protection on SecurityListing: Runtime API threat protection for Kubernetes environments with discovery

4.3(2)
Cequence API Security

Cequence API Security

language

API Security

Cequence API Security on SecurityListing: API security platform for discovery, testing, and protection of APIs

4.3(2)
Ostorlab Mobile Security

Ostorlab Mobile Security

language

API Security

Ostorlab Mobile Security on SecurityListing: Mobile security testing platform for Android and iOS apps with SAST and DAST

4.2(3)
SmaliHook

SmaliHook

language

Mobile App Security

SmaliHook on SecurityListing: Original SmaliHook Java source for Android cracking and reversing.

4.2(3)
AppUse

AppUse

language

Penetration Testing

AppUse on SecurityListing: A VM for mobile application security testing, Android and iOS applications, with custom-made tools and scripts.

4.2(3)
Koi Platform

Koi Platform

language

Risk Assessment

Koi Platform on SecurityListing: Tracks, governs, and secures software installs across endpoints and marketplaces.

3.9(3)
Heeler Runtime Threat Modeling

Heeler Runtime Threat

language

Threat Intelligence Platforms

Heeler Runtime Threat Modeling on SecurityListing: AI-powered continuous threat modeling for cloud applications in runtime

3.8(1)
Invicti ASPM

Invicti ASPM

language

Application Security Posture Management

Invicti ASPM on SecurityListing: ASPM platform for vulnerability mgmt, deduplication, triage & remediation

3.8(1)
Detectify API Scanning

Detectify API Scanning

language

API Security

Detectify API Scanning on SecurityListing: Dynamic API vulnerability scanner with payload-based testing and fuzzing

3.8(1)
Flyingduck Code Security Intelligence

Flyingduck Code Security

language

Software Composition Analysis

Flyingduck Code Security Intelligence on SecurityListing: SAST tool that detects logical flaws and business logic vulnerabilities

3.8(1)
pac-resolver

pac-resolver

language

Software Composition Analysis

pac-resolver on SecurityListing: Pac-resolver, a popular NPM package with 3 million weekly downloads, has a severe remote code execution flaw.

3.8(1)
DeepSource Autofix™ AI

DeepSource Autofix™ AI

language

Static Application Security Testing

DeepSource Autofix™ AI on SecurityListing: AI-powered code cleanup tool that automatically fixes security and quality issues

3.8(1)
APIsec API Security

APIsec API Security

language

API Security

APIsec API Security on SecurityListing: AI-powered API security testing platform with continuous attack simulation

3.8(1)
PentesterLab Master Advanced Web Hacking

PentesterLab Master Advanced

language

Penetration Testing

PentesterLab Master Advanced Web Hacking on SecurityListing: Online platform for web app security training via hands-on labs and code review

3.8(1)
DBAppSecurity DAS Web Application Firewall

DBAppSecurity DAS Web

language

Threat Intelligence Platforms

DBAppSecurity DAS Web Application Firewall on SecurityListing: WAF protecting websites and web apps from OWASP Top 10 and zero-day attacks

3.8(1)
OWASP API Security Top 10

OWASP API Security

language

API Security

OWASP API Security Top 10 on SecurityListing: A community website for API security news, vulnerabilities, and best practices

3.8(1)
Wapiti

Wapiti

language

Dynamic Application Security Testing

Wapiti on SecurityListing: Web-application vulnerability scanner with extensive coverage of security testing modules.

3.8(1)
BoostSecurity ASPM

BoostSecurity ASPM

language

Risk Assessment

BoostSecurity ASPM on SecurityListing: ASPM platform for monitoring and hardening app security across SDLC

3.8(1)
DerScanner Mobile Application Security Testing (MAST)

DerScanner Mobile Application

language

Vulnerability Assessment

DerScanner Mobile Application Security Testing (MAST) on SecurityListing: Mobile app security testing platform for Android and iOS apps

3.8(1)
Jit

Jit

language

Container Security

Jit on SecurityListing: An integrated application security platform that combines multiple security scanning tools with developer-focused workflows for automated code and infrastructure security testing.

3.8(1)
Levo Runtime Application Security

Levo Runtime Application

language

API Security

Levo Runtime Application Security on SecurityListing: Runtime application security platform for API and AI stack protection

3.8(1)
StackHawk

StackHawk

language

API Security

StackHawk on SecurityListing: A DAST solution that performs automated security testing of APIs and web applications within development workflows and CI/CD pipelines.

Boman.ai Boman

Boman.ai Boman

language

Application Security Posture Management

Boman.ai Boman on SecurityListing: AI-powered application security platform with automated scanning and analytics

SonarSource SonarQube Cloud

SonarSource SonarQube Cloud

language

Static Application Security Testing

SonarSource SonarQube Cloud on SecurityListing: Cloud-based SAST platform for code quality and security analysis

SonarSource Advanced Security

SonarSource Advanced Security

language

Software Composition Analysis

SonarSource Advanced Security on SecurityListing: SAST and SCA platform for code security analysis with taint analysis

Cequence Bot Management

Cequence Bot Management

language

API Security

Cequence Bot Management on SecurityListing: Bot detection and mitigation platform for web, mobile, and API applications

SCANOSS Geo Provenance Dataset

SCANOSS Geo Provenance

language

Risk Assessment

SCANOSS Geo Provenance Dataset on SecurityListing: Identifies geographic origin and authorship of open source code components

DerScanner Dynamic Application Security Testing (DAST)

DerScanner Dynamic Application

language

Dynamic Application Security Testing

DerScanner Dynamic Application Security Testing (DAST) on SecurityListing: DAST tool that scans live web apps to detect vulnerabilities in real-time

Traceable AppSec

Traceable AppSec

language

API Security

Traceable AppSec on SecurityListing: Platform for API & app security with discovery, testing, and protection

Wallarm API Security

Wallarm API Security

language

API Security

Wallarm API Security on SecurityListing: Unified API and AI security platform for discovery, protection, and testing

DryRun Security AppSec Agents

DryRun Security AppSec

language

Static Application Security Testing

DryRun Security AppSec Agents on SecurityListing: AI-native SAST tool providing contextual code security analysis in pull requests

SaltWorks SaltMiner

SaltWorks SaltMiner

language

Application Security Posture Management

SaltWorks SaltMiner on SecurityListing: AppSec posture mgmt platform for aggregating & reporting app security data

TeejLab API Discovery Manager

TeejLab API Discovery

language

API Security

TeejLab API Discovery Manager on SecurityListing: API discovery, security, governance & lifecycle mgmt platform for enterprises

Sense Defence AI Bot Protection

Sense Defence AI

language

API Security

Sense Defence AI Bot Protection on SecurityListing: AI-powered bot detection and management solution for web applications

Securden Endpoint Privilege Manager

Securden Endpoint Privilege

language

Privileged Access Management

Securden Endpoint Privilege Manager on SecurityListing: Endpoint privilege mgmt solution for removing local admin rights on endpoints

Bugstrix

Bugstrix

language

Offensive Security

Bugstrix is a cybersecurity firm that proactively identifies and fixes vulnerabilities to protect systems from threats and attacks.

apiiro.com

apiiro.com

language

Application Security

Force-multiply your AppSec program with Apiiro’s diamond-grade application security posture management (ASPM) platform.

Phoenix Security ASPM

Phoenix Security ASPM

language

Threat Intelligence Platforms

Phoenix Security ASPM on SecurityListing: ASPM platform with CNAPP integration for vulnerability prioritization & context

Invicti

Invicti

language

Application Security

Accurate and automated application security testing that scales like no other solution. Secure thousands of websites, applications, and APIs with the industry’s only DAST-first AppSec platform.

Sansec Shield

Sansec Shield

language

API Security

Sansec Shield on SecurityListing: Web application firewall for Magento/Adobe Commerce stores

Onapsis SAP Cybersecurity Solution

Onapsis SAP Cybersecurity

language

Risk Assessment

Onapsis SAP Cybersecurity Solution on SecurityListing: SAP-focused cybersecurity platform for vulnerability mgmt and threat detection

Enterprise AppSec Platform & Application Security Testing

Enterprise AppSec Platform

language

Application Security

Agentic AppSec platform for code-to-cloud application security testing - SAST, SCA, ASPM. See Checkmarx One; get a demo.

Invicti API Security

Invicti API Security

language

API Security

Invicti API Security on SecurityListing: API security testing platform with discovery, scanning, and remediation

SCANOSS Encryption Dataset

SCANOSS Encryption Dataset

language

Risk Assessment

SCANOSS Encryption Dataset on SecurityListing: Identifies cryptographic algorithms and libraries in code for compliance

Fastly API Security

Fastly API Security

language

API Security

Fastly API Security on SecurityListing: API security platform for discovery, monitoring, and protection at edge

Amplify Security Fix Your Code

Amplify Security Fix

language

Static Application Security Testing

Amplify Security Fix Your Code on SecurityListing: Automated vulnerability remediation tool that fixes code security issues

Anchore Secure

Anchore Secure

language

Container Security

Anchore Secure on SecurityListing: Container & source code scanning for vulnerabilities, malware, and secrets

TrustCaptcha

TrustCaptcha

language

API Security

TrustCaptcha on SecurityListing: A privacy-focused CAPTCHA alternative that protects websites from bot attacks using proof-of-work challenges and AI-based detection while maintaining GDPR compliance.

AI and experts for AppSec

AI and experts

language

Application Security

We integrate AI, automated tools, and pentesters to continuously help your development team build secure software without delays.

Application Security for the AI Era

Application Security for

language

Application Security

Adaptive application security for the AI era. Build and run secure software from code to cloud with Veracode.

Cycode

Cycode

language

Application Security

Cycode’s AI-native Application Security Platform unites security and development teams with actionable, code-to-runtime context to identify, prioritize, and fix the software risk that matters.

ASPM, AI Remediation & Secrets Scanning: AI-Native Application Security

ASPM, AI Remediation

language

Application Security

Legit Security is the AI-native ASPM platform to detect, fix and prevent AppSec risk from AI-generated code, secrets, and critical vulnerabilities.

Cequence AI Gateway

Cequence AI Gateway

language

API Security

Cequence AI Gateway on SecurityListing: Unified platform for API security, bot management, and AI gateway protection

CloudDefense.AI QINA (App Security)

CloudDefense.AI QINA (App

language

API Security

CloudDefense.AI QINA (App Security) on SecurityListing: DevSecOps platform for app security with SAST, DAST, SCA, and API testing

Seemplicity Exposure Management

Seemplicity Exposure Management

language

Exposure Management

Seemplicity Exposure Management on SecurityListing: Continuous threat exposure management platform for vulnerability remediation

DerScanner Full Cycle Application Security Testing

DerScanner Full Cycle

language

Dynamic Application Security Testing

DerScanner Full Cycle Application Security Testing on SecurityListing: Full-cycle app security platform with SAST, DAST, MAST, SCA & binary analysis

DryRun Security Codebase Intelligence

DryRun Security Codebase

language

Risk Assessment

DryRun Security Codebase Intelligence on SecurityListing: AI-native SAST tool with natural language query interface for codebase security

Software Improvement Group Sigrid®

Software Improvement Group

language

Static Application Security Testing

Software Improvement Group Sigrid® on SecurityListing: Software portfolio governance platform for code quality and security analysis

The Code Registry Technical Due Diligence

The Code Registry

language

Vulnerability Assessment

The Code Registry Technical Due Diligence on SecurityListing: AI-powered code analysis platform for technical due diligence and audits

Offensive360 Offensive 360 Virtual Compiler

Offensive360 Offensive 360

language

Static Application Security Testing

Offensive360 Offensive 360 Virtual Compiler on SecurityListing: AI-driven SAST tool using virtual compilers for source code analysis

SCANOSS Licence Dataset

SCANOSS Licence Dataset

language

API Security

SCANOSS Licence Dataset on SecurityListing: Open source license compliance dataset for detecting code snippets & obligations

Secure Blink ThreatSpy

Secure Blink ThreatSpy

language

API Security

Secure Blink ThreatSpy on SecurityListing: DAST platform for web app & API vulnerability scanning with AI-enabled features

The Code Registry Application & Supply Chain Security

The Code Registry

language

Software Composition Analysis

The Code Registry Application & Supply Chain Security on SecurityListing: AI-driven app & supply chain security platform with SBOM generation & scanning

Symbiotic Security

Symbiotic Security

language

Security Awareness Training

Symbiotic Security on SecurityListing: Real-time AI-powered code security tool for IDE vulnerability detection & fix

Sense Defence Advanced Rate Limiting

Sense Defence Advanced

language

API Security

Sense Defence Advanced Rate Limiting on SecurityListing: Advanced rate limiting solution for web apps and APIs with AI-driven controls

Perforce Klocwork

Perforce Klocwork

language

Static Application Security Testing

Perforce Klocwork on SecurityListing: Static code analyzer & SAST tool for C, C++, Java, JavaScript, Python, Kotlin

Pixee Pixeebot

Pixee Pixeebot

language

Static Application Security Testing

Pixee Pixeebot on SecurityListing: AI-powered automated code security remediation bot for vulnerability fixes

Syhunt SyhuntAPI

Syhunt SyhuntAPI

language

API Security

Syhunt SyhuntAPI on SecurityListing: API security testing tool for detecting vulnerabilities in web APIs

The Code Registry AI-Powered Code Intelligence

The Code Registry

language

Static Application Security Testing

The Code Registry AI-Powered Code Intelligence on SecurityListing: AI-powered code analysis platform for security, quality, and developer insights

Secure Coding Guidelines for Java SE

Secure Coding Guidelines

language

Secure Code Training

Secure Coding Guidelines for Java SE on SecurityListing: Guidelines for secure coding in Java SE to avoid bugs that could weaken security and open holes in Java's security features.

urandom vs. CSPRNG for Crypto Keys

urandom vs. CSPRNG

language

Secure Code Training

urandom vs. CSPRNG for Crypto Keys on SecurityListing: Utilize the kernel's CSPRNG for generating crypto keys instead of userspace CSPRNGs to avoid randomness failures.

Wallarm API Security Testing

Wallarm API Security

language

API Security

Wallarm API Security Testing on SecurityListing: Automated API security testing tool integrated into CI/CD pipelines

WordPress WPMissionControl

WordPress WPMissionControl

language

Application Security Posture Management

WordPress WPMissionControl on SecurityListing: WordPress plugin for site monitoring, security scanning, and observability

WPMissionControl

WPMissionControl

language

Application Security Posture Management

WPMissionControl on SecurityListing: WordPress monitoring platform for uptime, security, and performance tracking

Raven Runtime SCA

Raven Runtime SCA

language

Software Composition Analysis

Raven Runtime SCA on SecurityListing: Runtime SCA tool that identifies exploitable vulnerabilities in cloud environments

OX Application Security

OX Application Security

language

Container Security

OX Application Security on SecurityListing: ASPM platform with Code Projection tech for SDLC risk prioritization

Wiz Supply Chain Security

Wiz Supply Chain

language

Container Security

Wiz Supply Chain Security on SecurityListing: Cloud-native SCA and SBOM platform for supply chain security across code to runtime

Variegate

Variegate

language

Static Application Security Testing

Variegate on SecurityListing: Source code diversification tool that creates program variants with diversity

Kodem Zero-waste Application Security

Kodem Zero-waste Application

language

Software Composition Analysis

Kodem Zero-waste Application Security on SecurityListing: AI-native AppSec platform for code-to-runtime security with automated triaging

MergeBase Software Composition Analysis

MergeBase Software Composition

language

Software Composition Analysis

MergeBase Software Composition Analysis on SecurityListing: SCA platform for managing open source vulnerabilities across SDLC

Penta Security Encryption

Penta Security Encryption

language

Database Security

Penta Security Encryption on SecurityListing: Data encryption solutions for protecting data at rest and in transit

Prophaze Advanced AI-Based App & API Security

Prophaze Advanced AI-Based

language

API Security

Prophaze Advanced AI-Based App & API Security on SecurityListing: AI-based app & API security platform with WAF, DDoS protection, and bot mitigation

Prophaze API Security

Prophaze API Security

language

API Security

Prophaze API Security on SecurityListing: AI-powered API security platform with threat detection and discovery

Raven Runtime ADR

Raven Runtime ADR

language

Cloud Application Detection and Response

Raven Runtime ADR on SecurityListing: Runtime detection & response for cloud workloads and application libraries

Raven Runtime Application Protection

Raven Runtime Application

language

Container Security

Raven Runtime Application Protection on SecurityListing: Runtime app protection with function-level reachability and exploit prevention

SaltyCloud Dorkbot

SaltyCloud Dorkbot

language

Threat Intelligence Platforms

SaltyCloud Dorkbot on SecurityListing: Automated web vulnerability scanner for SQLi, XSS, and other web app flaws

ALPHA DS

ALPHA DS

EG flag

AI Security

ALPHA DS is a focused cybersecurity service provider offering strategic consultancy and tailored information security solutions across networks, applications, data, endpoints, and OT/ICS/IOT environme

CodeThreat AI-Native AppSec Platform

CodeThreat AI-Native AppSec

language

Static Application Security Testing

CodeThreat AI-Native AppSec Platform on SecurityListing: AI-native AppSec platform for code security analysis and vulnerability detection

Heeler Application Security Lifecycle Management

Heeler Application Security

language

Dynamic Application Security Testing

Heeler Application Security Lifecycle Management on SecurityListing: ASPM platform for tracking app security risks from development to deployment

SCANOSS Security Dataset

SCANOSS Security Dataset

language

API Security

SCANOSS Security Dataset on SecurityListing: Vulnerability detection dataset for declared & undeclared dependencies in code

Offensive 360 Secure Code Analysis

Offensive 360 Secure

language

Static Application Security Testing

Offensive 360 Secure Code Analysis on SecurityListing: SAST tool that analyzes source code for vulnerabilities using virtual compilers

Sumo Logic Monitoring and Troubleshooting

Sumo Logic Monitoring

language

Security Information and Event Management

Sumo Logic Monitoring and Troubleshooting on SecurityListing: Log analytics platform for monitoring, troubleshooting, and issue detection

Sucuri Website Firewall

Sucuri Website Firewall

language

API Security

Sucuri Website Firewall on SecurityListing: Cloud-based WAF protecting websites from attacks, DDoS, and exploits

Invicti DAST

Invicti DAST

language

API Security

Invicti DAST on SecurityListing: DAST scanner with proof-based vulnerability validation and CI/CD integration

Seemplicity Actionable Exposure Management

Seemplicity Actionable Exposure

language

Exposure Management

Seemplicity Actionable Exposure Management on SecurityListing: Platform for prioritizing and remediating security exposures across tools

SonarQube Server

SonarQube Server

language

Security Scanning

SonarQube Server on SecurityListing: A self-managed static code analysis platform that conducts continuous inspection of codebases to identify security vulnerabilities, bugs, and code quality issues.

Sabotage: Code added to popular NPM package wiped files in Russia and Belarus

Sabotage: Code added

language

Software Composition Analysis

Sabotage: Code added to popular NPM package wiped files in Russia and Belarus on SecurityListing: A developer added malicious code to a popular open-source package, wiping files on computers in Russia and Belarus as a protest.

Flyingduck Comprehensive SBOM Management

Flyingduck Comprehensive SBOM

language

Software Composition Analysis

Flyingduck Comprehensive SBOM Management on SecurityListing: SBOM management platform for tracking dependencies and vulnerabilities

Sonarsource SonarQube IDE

Sonarsource SonarQube IDE

language

Static Application Security Testing

Sonarsource SonarQube IDE on SecurityListing: IDE plugin for real-time code quality and security issue detection

VulnSign Dynamic Application Security Testing

VulnSign Dynamic Application

language

API Security

VulnSign Dynamic Application Security Testing on SecurityListing: DAST tool for scanning web apps, microservices, and APIs for vulnerabilities