Cycode Adds SAST Tool to ASPM Platform - DevOps.com
Briefly

Cycode's new static application security testing (SAST) tool enhances its application security posture management (ASPM) platform by significantly reducing false positives. Utilizing proprietary technology that adheres to OWASP benchmarks, the tool boasts a mere 2.1% false-positive rate, vastly superior to existing open-source alternatives. This development is crucial as many competitors face licensing challenges with tools like semgrep. The ability to scan multiple files simultaneously not only expedites responses but also fosters trust among developers, supported further by AI-driven prioritization of remediation tasks, affirming Cycode’s commitment to delivering reliable security solutions.
Cycode's new SAST tool achieves a statistically significant reduction in false positives, enhancing developer trust and optimizing remediation efforts for DevSecOps teams.
The integration of Cycode’s SAST with its ASPM platform not only lowers the false-positive rate but also allows for AI-driven prioritization of remediation tasks in DevSecOps.
Developers face skepticism towards existing SAST tools due to their high false-positive rates; Cycode addresses this concern with its proprietary technology demonstrating a 94% improvement.
By leveraging OWASP benchmarks and scanning capabilities that evaluate multiple files simultaneously, Cycode positions its SAST tool as a more accurate and reliable alternative in a changing landscape.
Read at DevOps.com
[
|
]