Newsletter Signup
Where current and emerging technology trends meet.
TecTrendsInformation Sources, Inc.
  | About TecTrends | Email Signup | Contact Us
 Live Search:
Live Search | Articles | Companies | TecTerms | Products
  Loading TecTrends Live Search - please wait... 
View Noteworthy Articles      PRNewswire
 
Article

Title: Hacker-Proofing ASP.Net Applications

Author: Binstock, Andrew Article Type: Review
Source: InfoWorld, v27 n44 p51(2) Publication Date: Oct 31, 2005
  ISSN: 0199-6649
  Illustrations: Screen Layouts
URL of Publication: http://www.infoworld.com

Compuware's DevPartner SecurityChecker 1.0 is a highly configurable and effective security-analysis engine for ASP.Net applications. The product is installed as a plug-in to Microsoft Visual Studio .Net 2003, occupying a slot on the principal menu bar from where it is launched. After launch, SecurityChecker spiders all Web pages in a project, and creates a discovery map that starts with the initial page. Users can narrow or broaden page ranges, specify form data to generate dynamically created Web pages, and enter passwords. Three types of analysis are performed: source-code analysis; a run-time search of dangerous conditions; and, finally, integrity analysis. Users are advised to run the source-code analysis frequently so problems are caught before they become a permanent part of the application. SecurityChecker lets users create custom reports as well as format reports in a number of ways, but it does not provide a true manager's console. The package also lacks the ability to track bug counts from week to week and tie them to specific events or releases. Another downside is that SecurityChecker has a tendency to run slowly, particularly when running all three types of analyses. Although the product is costly and lacks some integration features, Security Checker offers superior analysis of code security problems. Also, for sites using ASP.Net and IIS, it is the only solution available for securing applications.

Special Features: Screen Layouts

Companies:
Compuware Corp

Products:
DevPartner SecurityChecker Internet Security

TecTerms:


[Get Copyright Permissions] Click here for copyright permissions!
Copyright 2004-2008 Information Sources Inc.
 


Home About TecTrends About Us Contact Us Privacy Statement Terms and Conditions

TecTrends | P.O. Box 8120 | Berkeley CA 94707 | (510) 525-6220 | Email: tectrends@tectrends.com
© 2006 INFORMATION SOURCES INC | All rights reserved.