HP Assessment Management Platform software
HP Assessment Management Platform software is a distributed, scalable, web application security testing platform that helps your organization address the complexities of today’s web application security testing and scanning programs. Part of HP's HP Application Security Center
HP DevInspect software
HP DevInspect application security software helps you simplify security during development by automatically finding and fixing application vulnerabilities. Part of HP's HP Application Security Center
HP QAInspect software
The HP QAInspect works from the HP Quality Center interface for ease of use when performing website security testing. Part of HP's HP Application Security Center
HP WebInspect software
HP WebInspect web application security testing and assessment software enables you to thoroughly analyze today's complex web applications built on emerging Web 2.0 technologies – delivering fast scanning capabilities, broad security assessment coverage and accurate security scanning results. Part of HP's HP Application Security Center
Search This Blog
Showing posts with label security testing. Show all posts
Showing posts with label security testing. Show all posts
Wednesday, 25 February 2009
Tuesday, 24 February 2009
Ounce Labs
Ounce Labs' Static Application Security Testing (SAST) suite brings enterprise-wide awareness of business critical vulnerabilities. With this ability to identify and prioritize issues, organizations have the information they need to address their greatest risks. Ounce's patented source code analysis delivers the scalability and automation to help organizations such as EDS, IBM, Intel, and Lockheed Martin strengthen application security and protect confidential information. Ounce also helps organizations to verify regulatory and policy compliance, addressing PCI DSS, FISMA, HIPAA and others. For more information, please visit www.ouncelabs.com.
Ounce Labs in Leaders Quadrant for Gartner SAST
Ounce Labs, is positioned in the leaders quadrant in the first Gartner Magic Quadrant for Static Application Security Testing.(1) In addition to this recognition, Ounce Labs was recently named a "Champion" in the Application Security Market Update from Bloor Research and also received a fourth patent in source code analysis and security, validating the company's continuing commitment to product innovation.
"In my opinion, Gartner's assessment of the static analysis space will prove to be a valuable tool to organizations that are just embarking on their own software security strategy," said Mark Merkow, Director, IT Security Architecture for a leading American credit card issuer and an Ounce Labs customer. "This appears to me to further validate the application security landscape, and its viable players, and should help businesses accelerate their product adoption. Especially now, when many organizations outsource development, use existing open source code or their own internal development staff, none of us can be too careful when securing our organizational assets."
According to Gartner, "SAST for security vulnerabilities should be a mandatory requirement for all IT organizations that develop or procure applications. Although the market is relatively new and consolidating, enterprises must adopt SAST technologies and processes because the need is strategic."
"In my opinion, Gartner's assessment of the static analysis space will prove to be a valuable tool to organizations that are just embarking on their own software security strategy," said Mark Merkow, Director, IT Security Architecture for a leading American credit card issuer and an Ounce Labs customer. "This appears to me to further validate the application security landscape, and its viable players, and should help businesses accelerate their product adoption. Especially now, when many organizations outsource development, use existing open source code or their own internal development staff, none of us can be too careful when securing our organizational assets."
According to Gartner, "SAST for security vulnerabilities should be a mandatory requirement for all IT organizations that develop or procure applications. Although the market is relatively new and consolidating, enterprises must adopt SAST technologies and processes because the need is strategic."
SECNAP
Provider of email and network security innovations for organizations ranging from small businesses to global enterprises. In addition to its flagship Email Security Gateway Powered by SpammerTrap(R), available as an appliance or hosted service, SECNAP offers the Network Security Solution Powered by HackerTrap(TM), a patent-pending managed service that provides unrivaled 24/7 protection of network and information assets, and Security Services that include external penetration testing, security and compliance audits, web application and WiFi assessments and more. SECNAP is a 2009 Hot Companies Award finalist. For details visit www.secnap.com.
Fortify
Fortify 360
Vulnerability detection application. The tool can integrate with static source code analysis, runtime analysis and real-time monitoring to identify and prioritise security vulnerabilities. Vendor is Fortify Software.
Vulnerability detection application. The tool can integrate with static source code analysis, runtime analysis and real-time monitoring to identify and prioritise security vulnerabilities. Vendor is Fortify Software.
Coverity In Security Magic Quadrant
Coverity, Inc.,the software integrity company, today announced it has been positioned by Gartner, Inc. in the challengers quadrant in the 'Magic Quadrant for Static Application Security Testing(i)' report.
According to the report, "SAST for security vulnerabilities should be a mandatory requirement for all IT organizations that develop or procure applications. Although the market is relatively new and consolidating, enterprises must adopt SAST technologies and processes because the need is strategic."
The report also notes, "As attacks become more financially motivated and as organizations get better at securing their network, desktop and server infrastructures, there has been a shift in attacks to the application level. To address those new risks, several technology markets for application security have emerged, including static application security testing (SAST)."
"Coverity continues to aggressively execute our software integrity strategy to help customers solve their priority business challenges as they relate to software quality and security, such as compliance, recall prevention and componentization," said Dave Peterson, chief marketing officer at Coverity. "We believe our position in the Gartner report validates that software integrity has become an imperative for customers taking a strategic approach to driving quality, performance and security throughout every stage of the software development lifecycle."
According to Joseph Feiman and Neil MacDonald, the authors of the report, "SAST enables security vulnerability detection early in the application life cycle -- at construction (programming) and testing phases when the code is being written, built and tested. Proactively detecting and fixing security vulnerabilities earlier in the application development process reduces an application's overall security exposure and is less expensive than fixing the vulnerability when the application is in production."
Coverity recently announced a record year of growth in 2008 in which it expanded its customer base beyond 500 customers, raised its first round of external funding after six consecutive years of cash flow positive growth, executed three strategic acquisitions and received multiple awards for innovation including being named Deloitte Technology Fast 50 for the second consecutive year.
According to the report, "SAST for security vulnerabilities should be a mandatory requirement for all IT organizations that develop or procure applications. Although the market is relatively new and consolidating, enterprises must adopt SAST technologies and processes because the need is strategic."
The report also notes, "As attacks become more financially motivated and as organizations get better at securing their network, desktop and server infrastructures, there has been a shift in attacks to the application level. To address those new risks, several technology markets for application security have emerged, including static application security testing (SAST)."
"Coverity continues to aggressively execute our software integrity strategy to help customers solve their priority business challenges as they relate to software quality and security, such as compliance, recall prevention and componentization," said Dave Peterson, chief marketing officer at Coverity. "We believe our position in the Gartner report validates that software integrity has become an imperative for customers taking a strategic approach to driving quality, performance and security throughout every stage of the software development lifecycle."
According to Joseph Feiman and Neil MacDonald, the authors of the report, "SAST enables security vulnerability detection early in the application life cycle -- at construction (programming) and testing phases when the code is being written, built and tested. Proactively detecting and fixing security vulnerabilities earlier in the application development process reduces an application's overall security exposure and is less expensive than fixing the vulnerability when the application is in production."
Coverity recently announced a record year of growth in 2008 in which it expanded its customer base beyond 500 customers, raised its first round of external funding after six consecutive years of cash flow positive growth, executed three strategic acquisitions and received multiple awards for innovation including being named Deloitte Technology Fast 50 for the second consecutive year.
Filemon
Filemon
Security and monitoring application for the Windows file system activity on a system in real-time. Every open, reaad, write or delete on it status column is logged. The tool is free from Microsoft. A Registry monitor, process monitor, thread monitor and a hard disk monitor are also available.
Security and monitoring application for the Windows file system activity on a system in real-time. Every open, reaad, write or delete on it status column is logged. The tool is free from Microsoft. A Registry monitor, process monitor, thread monitor and a hard disk monitor are also available.
Monday, 23 February 2009
New Security Testing Tools
Co-Advisor
Security testing application which can test for protocol compatibility, compliance and robustness. HTTP (RFC 2616) and ICAP (RFC 3507) protocol modules are available. Runs on FreeBSD, Linux RPMs, On-Demand Windows.
Coverity Prevent
Security testing application specifically for Java source code. All possible paths are explored for detection of vulnerabilities and defects. Memory leaks, memory corruption, illegal pointer accesses, buffer overruns , format string errors are all searched for. Vendor is Coverity.
Defensics Core Internet Test Suite
Hardware-centric security testing tool. Infrastructure typically under test includes routers, switches, firewalls, desktop and server systems, laptops, PDAs, cell phones and other mobile systems, as well as a large number of various embedded systems.
Documentum
Enterprise content management application focusing on enterprisee content management. Areas under test include scalability, security, business process automization, XML in a range of servers and authoring tools.
Security testing application which can test for protocol compatibility, compliance and robustness. HTTP (RFC 2616) and ICAP (RFC 3507) protocol modules are available. Runs on FreeBSD, Linux RPMs, On-Demand Windows.
Coverity Prevent
Security testing application specifically for Java source code. All possible paths are explored for detection of vulnerabilities and defects. Memory leaks, memory corruption, illegal pointer accesses, buffer overruns , format string errors are all searched for. Vendor is Coverity.
Defensics Core Internet Test Suite
Hardware-centric security testing tool. Infrastructure typically under test includes routers, switches, firewalls, desktop and server systems, laptops, PDAs, cell phones and other mobile systems, as well as a large number of various embedded systems.
Documentum
Enterprise content management application focusing on enterprisee content management. Areas under test include scalability, security, business process automization, XML in a range of servers and authoring tools.
Documentum
Documentum
Enterprise Content Management application focusing on enterprisee content management. Areas under test include scalability, security, business process automization, XML in a range of servers and authoring tools.
Enterprise Content Management application focusing on enterprisee content management. Areas under test include scalability, security, business process automization, XML in a range of servers and authoring tools.
Core Internet Test
Defensics Core Internet Test Suite
Hardware- and web-centric security testing tool. Infrastructure typically under test includes routers, switches, firewalls, desktop and server systems, laptops, PDAs, cell phones and other mobile systems, as well as a large number of various embedded systems.
Hardware- and web-centric security testing tool. Infrastructure typically under test includes routers, switches, firewalls, desktop and server systems, laptops, PDAs, cell phones and other mobile systems, as well as a large number of various embedded systems.
Coverity Prevent
Coverity Prevent
Security testing application specifically for Java source code. All possible paths are explored for detection of vulnerabilities and defects. Memory leaks, memory corruption, illegal pointer accesses, buffer overruns , format string errors are all searched for. Vendor is Coverity.
Security testing application specifically for Java source code. All possible paths are explored for detection of vulnerabilities and defects. Memory leaks, memory corruption, illegal pointer accesses, buffer overruns , format string errors are all searched for. Vendor is Coverity.
Labels:
Coverity,
Java,
Java Tools,
security testing,
testing tools,
vulnerabilities
Sunday, 22 February 2009
New Test and Security Tools
Avignon Acceptance Testing System
Test scripting tool for the acceptance phase. The user can define the language to be used. XML is used as the definition, however the language can be extended to alllow the semantics to be user defined. Testing web applications through IE or FireFox, Swing and .NET WinForm applications are available.
C5 Compliance Platform
Software for checking security and compliance status across hetergenous systems. Vendor is SecureElements. Security vulnerabilities and compliance exposures are identified. Matches exposures with fixes, can deploy remediations and enforcement actions. Reporting of monitored assets can be summarized or details.
CERIAS Security Archive
A website for all things security-related. Links organized by subject, intrusion detection resources and tools.. An FTP site is available with utilities, scanners and detection tools. Acronym for 'Center for Education and Research in Information Assurance and Security' and hosted at Purdue University
Test scripting tool for the acceptance phase. The user can define the language to be used. XML is used as the definition, however the language can be extended to alllow the semantics to be user defined. Testing web applications through IE or FireFox, Swing and .NET WinForm applications are available.
C5 Compliance Platform
Software for checking security and compliance status across hetergenous systems. Vendor is SecureElements. Security vulnerabilities and compliance exposures are identified. Matches exposures with fixes, can deploy remediations and enforcement actions. Reporting of monitored assets can be summarized or details.
CERIAS Security Archive
A website for all things security-related. Links organized by subject, intrusion detection resources and tools.. An FTP site is available with utilities, scanners and detection tools. Acronym for 'Center for Education and Research in Information Assurance and Security' and hosted at Purdue University
Compliance Platform
C5 Compliance Platform
Software for checking security and compliance status across hetergenous systems. Vendor is SecureElements. Security vulnerabilities and compliance exposures are identified. Matches exposures with fixes, can deploy remediations and enforcement actions. Reporting of monitored assets can be summarized or details.
Software for checking security and compliance status across hetergenous systems. Vendor is SecureElements. Security vulnerabilities and compliance exposures are identified. Matches exposures with fixes, can deploy remediations and enforcement actions. Reporting of monitored assets can be summarized or details.
Thursday, 19 February 2009
New Test Tools
AppScan
Rational/IBM suite which automates web application security testing. Outputs include defect analysis and recommending remedying security flaws. Audiors and compliance officers can use the application to validate compliance with security requirements.
Aptixia IxLoad
Communications testing tool focusing on the triple play of voice, video and data services. The performance of related networks is simulated with IPTV and subscribers to ensure Quality of Experience. IGMP, MLD, and RTSP; voice protocols like SIP and MGCP; and data protocols like HTTP, FTP, and SMTP are all tested by the tool. Infrastructure DNS, DHCP, RADIUS, and LDAP protocols can all be checked. Security vulnerabilities can also be checked for through the use of simulated malicious traffic.
Atomic Watch
Web monitoring software. The application executes tests as a background process when installed on a server. Strings can be checked for on a webpage or form. Notification is by the usual methods, email, sound alarm or URL.
Core Impact Pro
Web application security testing tool from Core Security Technologies. Penetration testing techniques are used to identify vulnerabilitie from emerging threats and trace attack paths even if very complex.
Rational/IBM suite which automates web application security testing. Outputs include defect analysis and recommending remedying security flaws. Audiors and compliance officers can use the application to validate compliance with security requirements.
Aptixia IxLoad
Communications testing tool focusing on the triple play of voice, video and data services. The performance of related networks is simulated with IPTV and subscribers to ensure Quality of Experience. IGMP, MLD, and RTSP; voice protocols like SIP and MGCP; and data protocols like HTTP, FTP, and SMTP are all tested by the tool. Infrastructure DNS, DHCP, RADIUS, and LDAP protocols can all be checked. Security vulnerabilities can also be checked for through the use of simulated malicious traffic.
Atomic Watch
Web monitoring software. The application executes tests as a background process when installed on a server. Strings can be checked for on a webpage or form. Notification is by the usual methods, email, sound alarm or URL.
Core Impact Pro
Web application security testing tool from Core Security Technologies. Penetration testing techniques are used to identify vulnerabilitie from emerging threats and trace attack paths even if very complex.
AppScan
AppScan
IBM Rational suite which automates web application security testing. Outputs include defect analysis and recommending remedying security flaws. Audiors and compliance officers can use the application to validate compliance with security requirements.
IBM Rational suite which automates web application security testing. Outputs include defect analysis and recommending remedying security flaws. Audiors and compliance officers can use the application to validate compliance with security requirements.
Security Tools
Acunetix Web Vulnerability Scanner
Security testing application based on crawling web sites. It selects servers from a particular IP or IP range. The site is crawled accumulating information about every file and displaying the site structure. An automatic audit is performed covering common security issues. Technologies such as CGI, PHP, ASP, ASP.NET are tested for vulnerabilities. Areas covered are cross-site scripting, CRLF injection, code execution, directory traversal. MSIE and Windows required.
AppScan
Aptixia IxLoad
Avalanche
C5 Compliance Platform
CERIAS Security Archive
Co-Advisor
Core Impact Pro
Web application security testing tool from Core Security Technologies. Penetration testing techniques are used to identify vulnerabilitie from emerging threats and trace attack paths even if very complex.
Coverity Prevent
Defensics Core Internet Test Suite
Documentum
Filemon
Fortify 360
Global Up Time
Hailstorm
HP WebInspect
Klocwork K7
Nessus
NetIQ Security Analyzer
NMap Network Mapper
OpenDeploy
Oracle Universal Content Management System
OWASP Security Testing Tools
OWASP Security Testing Tools Listing
Parasoft SOAtest
PatchLink Scan
Perimeter Check
Qualys Free Security Scans
Qualys Guard
Radview's WebLoad
Retina Web Security Scanner
SAINT
SARA
Secure-Me
Security Center
Tools4Internet
Top 100 Security Tools
Watchmouse
Security testing application based on crawling web sites. It selects servers from a particular IP or IP range. The site is crawled accumulating information about every file and displaying the site structure. An automatic audit is performed covering common security issues. Technologies such as CGI, PHP, ASP, ASP.NET are tested for vulnerabilities. Areas covered are cross-site scripting, CRLF injection, code execution, directory traversal. MSIE and Windows required.
AppScan
Aptixia IxLoad
Avalanche
C5 Compliance Platform
CERIAS Security Archive
Co-Advisor
Core Impact Pro
Web application security testing tool from Core Security Technologies. Penetration testing techniques are used to identify vulnerabilitie from emerging threats and trace attack paths even if very complex.
Coverity Prevent
Defensics Core Internet Test Suite
Documentum
Filemon
Fortify 360
Global Up Time
Hailstorm
HP WebInspect
Klocwork K7
Nessus
NetIQ Security Analyzer
NMap Network Mapper
OpenDeploy
Oracle Universal Content Management System
OWASP Security Testing Tools
OWASP Security Testing Tools Listing
Parasoft SOAtest
PatchLink Scan
Perimeter Check
Qualys Free Security Scans
Qualys Guard
Radview's WebLoad
Retina Web Security Scanner
SAINT
SARA
Secure-Me
Security Center
Tools4Internet
Top 100 Security Tools
Watchmouse
Core Impact Pro
Core Impact Pro
Web application security testing tool from Core Security Technologies. Penetration testing techniques are used to identify vulnerabilitie from emerging threats and trace attack paths even if very complex.
Web application security testing tool from Core Security Technologies. Penetration testing techniques are used to identify vulnerabilitie from emerging threats and trace attack paths even if very complex.
Thursday, 12 February 2009
New Tools
Abbot Java GUI Test Framework
Timothy Wall produced testing framework. Features include automated event generation, Java validation of GUI components. The framework can be invoked directly from Java code or without programming vis Costello scripts. Builds upon the java.awt.Robot class. Suitable for both unit tests by developers and functional testing.
actiWate
Freeware web application testing environment. An advanced framework for scripting tests, Atttached is the Test Writing Assistant which is a browser plug -in.
Acunetix Web Vulnerability Scanner
Security testing application based on crawling web sites. It selects servers from a particular IP or IP range. The site is crawled accumulating information about every file and displaying the site structure. An automatic audit is performed covering common security issues. Technologies such as CGI, PHP, ASP, ASP.NET are tested for vulnerabilities. Areas covered are cross-site scripting, CRLF injection, code execution, directory traversal. MSIE and Windows required.
AgentWebRanking
Search engine monitoring software aiming to improve search engine ranks and submit URLs. Features include keyword searches and specified search depth. Comparisons can be made with competitor sites and meta tag creation. Windows and MSIE required. [It has to be noted that most search engines do not automated URL submission. Users are forced to enter a bespoke text.]
Agitator
Unit test tool for Java developers from Agitar Software. Eclipse and other IDEs available. Instances of classes are created, each method is called with dynamically created sets of input data. XML storage of information. Junit generation and code-rule enforcement are also available.
Alchemy Eye
Server monitoring tool for availability and performance. Vendor is Alchemy Lab. Notifications can be by cell phone, pager, e-mail. External programs can be executed externally and events loggeed.
Alert Linkrunner
Windows-based link checking tool from Viable Software.
AlertBot
Monitor service that enables webmasters to test website availability and performance. They can be alerted of downtime. FTP, HTTP, https, pop3, snmp, ip and dns server monitoring
AlertMeFirst
Web site performance and availability monitoring service. The perspective taken is the consumer. Mail servers, proxy servers, transaction servers and databases can be all monitored.
AlertSite
A package of monitoring tools and services for webmasters. Performance and availability are the focus. Notification can be by e-mail, pager or mobile.
Apache JMeter
Functional load testing tool from the Apache Software Foundation. The software both tests behaviour and measures performance. A wide range of applications can be tested, the original use was for web applications. Static and dynamic resources. E.g. files, Servlets, Perl scripts, Java Objects, Data Bases and Queries and FTP Servers. Servers, networkd or objects can be placed under heavy loads. Alternatively a range of loads and types can be applied. Reporting can be graphical of performance. Jave-based.
PocketSOAP
GUI-based packet capture tool. Packet data is captured and displayed between local client and web server. Captures can be saved to disk. Available for Windows, binaries and source. PocketXML-RPC and PocketHTTP also available.
PowerMapper
Tool for automated site mapping, accessibility and usability checking. HTML validation, link checking, CSS validation, browser compatibility. Vendor is Electrum Multimedia. Requires Windows and MSIE.
Timothy Wall produced testing framework. Features include automated event generation, Java validation of GUI components. The framework can be invoked directly from Java code or without programming vis Costello scripts. Builds upon the java.awt.Robot class. Suitable for both unit tests by developers and functional testing.
actiWate
Freeware web application testing environment. An advanced framework for scripting tests, Atttached is the Test Writing Assistant which is a browser plug -in.
Acunetix Web Vulnerability Scanner
Security testing application based on crawling web sites. It selects servers from a particular IP or IP range. The site is crawled accumulating information about every file and displaying the site structure. An automatic audit is performed covering common security issues. Technologies such as CGI, PHP, ASP, ASP.NET are tested for vulnerabilities. Areas covered are cross-site scripting, CRLF injection, code execution, directory traversal. MSIE and Windows required.
AgentWebRanking
Search engine monitoring software aiming to improve search engine ranks and submit URLs. Features include keyword searches and specified search depth. Comparisons can be made with competitor sites and meta tag creation. Windows and MSIE required. [It has to be noted that most search engines do not automated URL submission. Users are forced to enter a bespoke text.]
Agitator
Unit test tool for Java developers from Agitar Software. Eclipse and other IDEs available. Instances of classes are created, each method is called with dynamically created sets of input data. XML storage of information. Junit generation and code-rule enforcement are also available.
Alchemy Eye
Server monitoring tool for availability and performance. Vendor is Alchemy Lab. Notifications can be by cell phone, pager, e-mail. External programs can be executed externally and events loggeed.
Alert Linkrunner
Windows-based link checking tool from Viable Software.
AlertBot
Monitor service that enables webmasters to test website availability and performance. They can be alerted of downtime. FTP, HTTP, https, pop3, snmp, ip and dns server monitoring
AlertMeFirst
Web site performance and availability monitoring service. The perspective taken is the consumer. Mail servers, proxy servers, transaction servers and databases can be all monitored.
AlertSite
A package of monitoring tools and services for webmasters. Performance and availability are the focus. Notification can be by e-mail, pager or mobile.
Apache JMeter
Functional load testing tool from the Apache Software Foundation. The software both tests behaviour and measures performance. A wide range of applications can be tested, the original use was for web applications. Static and dynamic resources. E.g. files, Servlets, Perl scripts, Java Objects, Data Bases and Queries and FTP Servers. Servers, networkd or objects can be placed under heavy loads. Alternatively a range of loads and types can be applied. Reporting can be graphical of performance. Jave-based.
PocketSOAP
GUI-based packet capture tool. Packet data is captured and displayed between local client and web server. Captures can be saved to disk. Available for Windows, binaries and source. PocketXML-RPC and PocketHTTP also available.
PowerMapper
Tool for automated site mapping, accessibility and usability checking. HTML validation, link checking, CSS validation, browser compatibility. Vendor is Electrum Multimedia. Requires Windows and MSIE.
Monday, 9 February 2009
Acunetix Web Vulnerability Scanner
Acunetix Web Vulnerability Scanner
Security testing application based on crawling web sites. It selects servers from a particular IP or IP range. The site is crawled accumulating information about every file and displaying the site structure. An automatic audit is performed covering common security issues. Technologies such as CGI, PHP, ASP, ASP.NET are tested for vulnerabilities. Areas covered are cross-site scripting, CRLF injection, code execution, directory traversal. MSIE and Windows required.
Security testing application based on crawling web sites. It selects servers from a particular IP or IP range. The site is crawled accumulating information about every file and displaying the site structure. An automatic audit is performed covering common security issues. Technologies such as CGI, PHP, ASP, ASP.NET are tested for vulnerabilities. Areas covered are cross-site scripting, CRLF injection, code execution, directory traversal. MSIE and Windows required.
Tuesday, 26 August 2008
Crosscheck Networks in Europe Tie-Up
Crosscheck Networks has announced a partnership with A.E.T. Europe B.V. (AET), market leader in strong authentication with cryptographic tokens and Digital ID Management. The partnership enables Crosscheck Networks to provide SOA customers worldwide the ability to test WS-Security operations using hardware based smart cards and USB tokens as well as test secure SSL session with dynamic X509 client authentication using the hardware smart card certificate. The integration of SafeSign Identity Client (IC) with SOAPSonar testing product allows customers to quickly validate the interoperability of SOA client applications that utilize hardware-based smartcards for secure signed or encrypted SOAP/XML messages when communicating with SOA infrastructure components.
"AET is the market and technology leader when it comes to middleware for cryptographic tokens. Crosscheck Networks is pleased to partner with a company that delivers strong authentication worldwide to over 10 million users with more than 70 cards and USB tokens from more than 10 different manufacturers," said Jack Hembrough, Board Advisor Crosscheck Networks.
Crosscheck Networks' industry-leading SOA testing software, SOAPSonar, is based on four pillars of SOA testing -- functional regression, performance, security, and compliance. The product simplifies testing at each stage of the SOA lifecycle.
"We are seeing increased use cases in Europe of SOA client applications utilizing hardware-based smartcards for SOAP-XML message cryptography," said Reinoud Weijman, Managing Director of AET. "SOAPSonar's integration with SafeSign IC allows SOA customers to easily test hardware-based cryptography for SOAP-XML before deploying production SOA client applications."
"AET is the market and technology leader when it comes to middleware for cryptographic tokens. Crosscheck Networks is pleased to partner with a company that delivers strong authentication worldwide to over 10 million users with more than 70 cards and USB tokens from more than 10 different manufacturers," said Jack Hembrough, Board Advisor Crosscheck Networks.
Crosscheck Networks' industry-leading SOA testing software, SOAPSonar, is based on four pillars of SOA testing -- functional regression, performance, security, and compliance. The product simplifies testing at each stage of the SOA lifecycle.
"We are seeing increased use cases in Europe of SOA client applications utilizing hardware-based smartcards for SOAP-XML message cryptography," said Reinoud Weijman, Managing Director of AET. "SOAPSonar's integration with SafeSign IC allows SOA customers to easily test hardware-based cryptography for SOAP-XML before deploying production SOA client applications."
Subscribe to:
Posts (Atom)