[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [WEB SECURITY] Open Source Code Analysis Tools



------_=_NextPart_001_01C8A16E.58472756
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

Thanks to everyone who sent me information both publicly and privately.  =
For those of you suggesting a commercial package, I appreciate it, but =
have close to zero budget right now so don't be offended if I don't get =
back to you.  I'll look over the other recommendations in the next few =
days.  Thanks again.
=20
Matt

________________________________

From: Truxaw, Matthew [mailto:mtruxaw@firstam.com]
Sent: Tue 4/15/2008 3:44 PM
To: websecurity@webappsec.org
Subject: [WEB SECURITY] Open Source Code Analysis Tools


Can anyone point me in the direction of a good open source tool for =
automating code analysis for security issues?  In particular, I'd like =
one or more tools to scan our java and .net (C#) code base. =20
=20
Regards,
=20
Matt=20
=20


**********************************************************************
This message contains confidential information intended only for the use =
of the addressee(s) named above and may contain information that is =
legally privileged.  If you are not the addressee, or the person =
responsible for delivering it to the addressee, you are hereby notified =
that reading, disseminating, distributing or copying this message is =
strictly prohibited.  If you have received this message by mistake, =
please immediately notify us by replying to the message and delete the =
original message immediately thereafter.

Thank you.

                                                                         =
                                                FADLD Tag
**********************************************************************


------_=_NextPart_001_01C8A16E.58472756
Content-Type: text/html;
	charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

<HTML dir=3Dltr><HEAD>=0A=
<META http-equiv=3DContent-Type content=3D"text/html; charset=3Dunicode">=0A=
<META content=3D"MSHTML 6.00.6000.16608" name=3DGENERATOR></HEAD>=0A=
<BODY>=0A=
<DIV id=3DidOWAReplyText54065 dir=3Dltr>=0A=
<DIV dir=3Dltr><FONT face=3DArial color=3D#000000 size=3D2>Thanks to =
everyone who sent me information both publicly and privately.&nbsp; For =
those of you suggesting a commercial package, I appreciate it, but have =
close to zero budget right now so don't be offended if I don't get back =
to you.&nbsp; I'll look over the other recommendations in the next few =
days.&nbsp; Thanks again.</FONT></DIV>=0A=
<DIV dir=3Dltr><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>=0A=
<DIV dir=3Dltr><FONT face=3DArial size=3D2>Matt</FONT></DIV></DIV>=0A=
<DIV dir=3Dltr><BR>=0A=
<HR tabIndex=3D-1>=0A=
<FONT face=3DTahoma size=3D2><B>From:</B> Truxaw, Matthew =
[mailto:mtruxaw@firstam.com]<BR><B>Sent:</B> Tue 4/15/2008 3:44 =
PM<BR><B>To:</B> websecurity@webappsec.org<BR><B>Subject:</B> [WEB =
SECURITY] Open Source Code Analysis Tools<BR></FONT><BR></DIV>=0A=
<DIV>=0A=
<DIV><FONT face=3DArial color=3D#0000ff size=3D2><SPAN =
class=3D905154222-15042008>Can anyone point me in the direction of a =
good open source tool for automating code analysis for security =
issues?&nbsp; In particular, I'd like one or more tools to scan our java =
and .net (C#) code base.&nbsp; </SPAN></FONT></DIV>=0A=
<DIV>&nbsp;</DIV>=0A=
<DIV dir=3Dltr align=3Dleft><FONT face=3DArial =
size=3D2>Regards,</FONT></DIV>=0A=
<DIV dir=3Dltr align=3Dleft><FONT face=3DArial =
size=3D2></FONT>&nbsp;</DIV>=0A=
<DIV dir=3Dltr align=3Dleft><FONT face=3DArial size=3D2>Matt =
</FONT></DIV>=0A=
<DIV>&nbsp;</DIV><BR>=0A=
<P>**********************************************************************=
<BR>This message contains confidential information intended only for the =
use of the addressee(s) named above and may contain information that is =
legally privileged.&nbsp; If you are not the addressee, or the person =
responsible for delivering it to the addressee, you are hereby notified =
that reading, disseminating, distributing or copying this message is =
strictly prohibited.&nbsp; If you have received this message by mistake, =
please immediately notify us by replying to the message and delete the =
original message immediately thereafter.</P>=0A=
<P>Thank you.</P>=0A=
<P><FONT =
size=3D1>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbs=
p;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp=
;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&=
nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&n=
bsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nb=
sp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbs=
p;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp=
;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; =
FADLD =
Tag</FONT><BR>***********************************************************=
***********</P></DIV></BODY></HTML>
------_=_NextPart_001_01C8A16E.58472756--



Brought to you by http://www.webappsec.org
Search this site