DEV Community

#sast

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
What is SAST? A developer's guide to static application security testing

What is SAST? A developer's guide to static application security testing

Comments
5 min read
The same detector scores 45.5 or 100 on the OWASP Benchmark. Both are 'true.'

The same detector scores 45.5 or 100 on the OWASP Benchmark. Both are 'true.'

Comments
3 min read
There are 755 static-analysis tools. Only 42 are open-source security scanners.

There are 755 static-analysis tools. Only 42 are open-source security scanners.

Comments
3 min read
CodeQL 2.26.2 trims what counts as safe: fresh alerts incoming

CodeQL 2.26.2 trims what counts as safe: fresh alerts incoming

1
Comments
3 min read
I Built a 100% Offline SAST Scanner That Finds What Semgrep and CodeQL Miss

I Built a 100% Offline SAST Scanner That Finds What Semgrep and CodeQL Miss

Comments
1 min read
Why Your SAST Scanner Misses 86% of Real Vulnerabilities

Why Your SAST Scanner Misses 86% of Real Vulnerabilities

Comments
7 min read
Applying SAST Tools to Real Applications — A Hands-On Look at Bandit

Applying SAST Tools to Real Applications — A Hands-On Look at Bandit

Comments 1
4 min read
Finding Security Bugs Before They Ship: Applying Bandit (SAST) to a Python Web App

Finding Security Bugs Before They Ship: Applying Bandit (SAST) to a Python Web App

40
Comments 2
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.