Recommended Application Security Testing (AST) Techniques

There are some very interesting takeaways from Gartner’s recent report “How to Deploy and Perform Application Security Testing”...

Software Trustworthiness Best Practices for IIoT

The Industrial Internet Consortium (IIC) recently released their white paper “Software Trustworthiness Best Practices” which...

Using CodeSonar to Evaluate Software for the 2019 CWE Top 25 Most Dangerous Software Errors

The Common Weakness Enumeration (CWE) Top 25 most dangerous software errors, a.k.a., the CWE Top 25 is a list of the most...

The Role of Static Analysis in Assessing Trustworthiness of IIoT Software

In a previous post I introduced the Industrial Internet Consortium (IIC), the reference architecture and the concepts of...

How Sound Static Analysis Complements Heuristic Analysis

Not all static analysis tools work the same, there are in fact a spectrum of tools that use a variety of techniques ranging...