What Is Dynamic Application Security Testing (DAST)? | AppSec 101

preview_player
Показать описание
In Episode 2 of our AppSec 101 series, we sit down with Rick Smith, Product Manager at Micro Focus Fortify, to learn the basics of Dynamic Application Security Testing (DAST). Rick addresses the following common questions:
- What is DAST?
- What is the difference between SAST and DAST?
- What are the strengths of DAST?
- Why should security professionals use DAST tools?
- Where is DAST going in the future?
- What Fortify tools provide DAST?

- Connect with peers and share your knowledge
- Find solutions and answers to your technical questions
- Stay informed on new releases and product enhancements
- Access downloads, demos, videos and support tips
Рекомендации по теме
Комментарии
Автор

Enjoyed this webinar. Rick Smith does a terrific job in describing DAST.

herbcollins
Автор

Is it advisable to do DAST for COTS application like Sharepoint. Also what kind of vulnerabilities, we can expect in scanning result of a Sharepoint Application?

mehulpruthi
Автор

Hey team, I had a question on DevSecOps. Now a days teams are using DAST on environments like azure and AWS where sometimes in the frontend WAF is implemented already. And there is no point in using a DAST tool when WAF is on. Just checking if the DAST tool should be used in an environment that DAST is turned off or any idea how normally its done ?

chackokabraham
Автор

It's very good explanation, can we see some DAST Usecases of to 10 App Testing scanarios

mangeshsalunkhejaijaijagan
Автор

Which is better if I only had to do one?

blacklivesfallout