Jan. 29, 2024, 4:19 a.m. | OWASP Foundation

OWASP Foundation www.youtube.com

Slides: https://static.sched.com/hosted_files/owasp2023globalappsecwashin/d8/AppSec%20DC%202023%20FvB%20Pushing%20boundaries%20of%20SAST.pptx

Static Application Security Testing (SAST) is the well-known practice of analyzing a program's source code using automated techniques to detect potential security problems. Such tools implement two distinctive styles of algorithms. The first one is structural. This is like advanced pattern matching and is also common in code-quality oriented tools. The second one is dataflow analysis, also known as taint analysis. In this case, the SAST tool tries to find paths between entry points of potential attacks, such …

advanced algorithms analysis application application security application security testing automated code detect practice problems program quality sast security security testing source code static application security testing techniques testing tools well-known

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC