DevOps Classroomnotes 13/Apr/2022

OWASP Guidelines to be Followed

Automated Security Tests

  • If you are interested in learning about continuous security and do not have an application to test, the OWASP Benchmark Refer Here is the fully runnable open source web application
  • SAST Tools: Refer Here

Lets Use Some SAST Tools

  • Bandit:
    • Clone the code into local system and run the bandit scan

  • FindSecurityBugs: Refer Here renamed as spotbugs
  • The popular SAST PAID Version tools are
    • Coverity from synopys
    • Fortify from MicroFocus
Published
Categorized as Uncategorized Tagged

By continuous learner

devops & cloud enthusiastic learner

Leave a ReplyCancel reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Please turn AdBlock off
Customized Social Media Icons from Acurax Digital Marketing Agency

Discover more from Direct DevOps from Quality Thought

Subscribe now to keep reading and get access to the full archive.

Continue reading

Exit mobile version
%%footer%%