28.10.2014 Views

SQL Injection Attacks and Defense - 2009

SQL Injection Attacks and Defense - 2009

SQL Injection Attacks and Defense - 2009

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

132 Chapter 3 • Reviewing Code for <strong>SQL</strong> <strong>Injection</strong><br />

■■<br />

■■<br />

■■<br />

■■<br />

■■<br />

URL: www.fortify.com<br />

Languages: Java, JSP, C/C++, ColdFusion, ASP.NET (C# <strong>and</strong> VB.NET), XML <strong>and</strong><br />

<strong>SQL</strong> (T-<strong>SQL</strong> <strong>and</strong> PL/<strong>SQL</strong>), JavaScript, classic ASP/VBScript, <strong>and</strong> Visual Basic 6<br />

Platforms: Windows, Mac, Solaris, Linux, AIX, <strong>and</strong> HP-UX<br />

IDEs: Microsoft Visual Studio, Eclipse, WebSphere Application Developer, <strong>and</strong> IBM<br />

Rational Application Developer<br />

Price: Contact to request quote<br />

CodeSecure<br />

CodeSecure is available as an enterprise-level appliance or as a hosted software service.<br />

CodeSecure Workbench is available as a plug-in to the Visual Studio, Eclipse, <strong>and</strong> IBM<br />

Rational Application Developer IDEs. CodeSecure is based on pattern-free algorithms;<br />

it determines the behavioral outcomes of input data by calculating all possible execution<br />

paths. During analysis, each vulnerability is traced back to the original entry point <strong>and</strong> line<br />

of code that caused it, providing a map of the vulnerability propagation through the<br />

application.<br />

■■<br />

■■<br />

■■<br />

■■<br />

■■<br />

URL: www.armorize.com<br />

Languages: Java, PHP, ASP, <strong>and</strong> .NET<br />

Platform: Web-based<br />

IDEs: Visual Studio, Eclipse, <strong>and</strong> IBM Rational Application Developer<br />

Price: Contact to request quote

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!