HOME

TheInfoList



OR:

HCL AppScan, previously known as IBM AppScan, is a family of desktop and web security testing and monitoring tools, formerly a part of the
Rational Software Rational Machines is an enterprise founded by Paul Levy and Mike Devlin in 1981 to provide tools to expand the use of modern software engineering practices, particularly explicit modular architecture and iterative development. It changed its ...
division of IBM. In July 2019, the product was acquired by
HCL Technologies HCLTech (formerly Hindustan Computers Limited or HCL Technologies) is an Indian multinational information technology (IT) services and consulting company headquartered in Noida.It emerged as an independent company in 1991 when HCL entered into ...
and is currently marketed unde
HCL Software
a product development division of HCL Technologies. AppScan is intended to test both on-premise and web applications for security vulnerabilities during the development process, when it is least expensive to fix such problems. The product scans the behavior of each application, whether an off-the-shelf application or internally developed, and develops a program intended to test all of its functions for both common and application-specific vulnerabilities. This family of products is capable of performing SAST, DAST, IAST and Mobile Analysis against the user's source code and check for vulnerabilities.


History

AppScan was originally developed by
Israel Israel (; he, יִשְׂרָאֵל, ; ar, إِسْرَائِيل, ), officially the State of Israel ( he, מְדִינַת יִשְׂרָאֵל, label=none, translit=Medīnat Yīsrāʾēl; ), is a country in Western Asia. It is situated ...
i software company Sanctum Ltd. (formerly Perfecto Technologies) and was first released in 1998. A year later, Sanctum expanded its web security bundle and launched an
Application firewall An application firewall is a form of firewall that controls input/output or system calls of an application or service. It operates by monitoring and blocking communications based on a configured policy, generally with predefined rule sets to c ...
, called
AppShield AppShield was the world's first Application firewall. AppShield was conceptualized by Eran Reshef and Gili Raanan and was introduced to the market by Perfecto Technologies (now Sanctum) in the summer of 1999. AppShield is a safeguard for many sys ...
. The first version of AppShield was developed by a team led by
Gili Raanan Gili Raanan (born 1969) is an Israeli venture capitalist and one of the inventors of CAPTCHA (US patent application with 1997 priority date ), the WAF (web application firewall) and many other inventions in the fields of application security and ...
, and was running on a dedicated
Linux Linux ( or ) is a family of open-source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991, by Linus Torvalds. Linux is typically packaged as a Linux distribution, which ...
server. AppScan version 2.0 was released in February 2001, adding policy recognition engine and knowledge database, an automatic and customizable crawler engine and attack simulator. Version 3 was released in April 2002, adding collaborative testing capabilities, where different tasks can be assigned to different testers; and a number of user interface enhancements in both the scanning and reporting sections of the program. By 2003 AppScan was used by over 500 enterprise customers and had revenues close to 30 million dollars. In July 2004, Sanctum was acquired by
Massachusetts Massachusetts (Massachusett language, Massachusett: ''Muhsachuweesut assachusett writing systems, məhswatʃəwiːsət'' English: , ), officially the Commonwealth of Massachusetts, is the most populous U.S. state, state in the New England ...
based company
Watchfire IBM has undergone a large number of mergers and acquisitions during a corporate history lasting over a century; the company has also produced a number of spinoffs during that time. The acquisition date listed is the date of the agreement betw ...
, which developed a web applications management platform named WebXM. AppScan became Watchfire's flagship product and Sanctum's R&D center in
Herzliya Herzliya ( ; he, הֶרְצְלִיָּה ; ar, هرتسليا, Hirtsiliyā) is an affluent city in the central coast of Israel, at the northern part of the Tel Aviv District, known for its robust start-up and entrepreneurial culture. In it h ...
, Israel, became Watchfire's main R&D location. In June 2007,
Watchfire IBM has undergone a large number of mergers and acquisitions during a corporate history lasting over a century; the company has also produced a number of spinoffs during that time. The acquisition date listed is the date of the agreement betw ...
was acquired by IBM and incorporated into the
Rational Software Rational Machines is an enterprise founded by Paul Levy and Mike Devlin in 1981 to provide tools to expand the use of modern software engineering practices, particularly explicit modular architecture and iterative development. It changed its ...
product line, enabling IBM to cover more of the application development lifecycle; with the addition of a new tool to help developers further bolster the security of the application itself.
Watchfire IBM has undergone a large number of mergers and acquisitions during a corporate history lasting over a century; the company has also produced a number of spinoffs during that time. The acquisition date listed is the date of the agreement betw ...
R&D center was incorporated into
IBM R&D Labs in Israel IBM is a globally integrated enterprise operating in 170 countries. IBM's R&D history in Israel began in 1972 when Professor Josef Raviv established the IBM Israel Scientific Center in the Technion's Computer Science Building in Haifa. Today, ov ...
. In 2009 IBM acquired
Ounce Labs The ounce () is any of several different units of mass, weight or volume and is derived almost unchanged from the , an Ancient Roman unit of measurement. The avoirdupois ounce (exactly ) is avoirdupois pound; this is the United States customa ...
and added yet another tool to AppScan to find and correct vulnerabilities in software source code. This new version was quickly re-packaged as a separate edition of AppScan: AppScan Source Edition. In June 2019, HCL acquired select IBM collaboration, commerce, digital experience, AppScan and BigFix solutions.HCL Technologies to Acquire Select IBM Software Products for $1.8B
/ref>


Editions

* AppScan Enterprise Edition - Client-server version used to scale security testing. * AppScan Standard Edition -
Desktop A desktop traditionally refers to: * The surface of a desk (often to distinguish office appliances that fit on a desk, such as photocopiers and printers, from larger equipment covering its own area on the floor) Desktop may refer to various compu ...
software for automated Web application security testing environment for IT Security, auditors, and penetration testers * AppScan Source Edition - Prevent data breaches by locating security flaws in the source code * AppScan on Cloud - Application Security Testing suite as a service.


References


External links


HCL AppScan Standard web pageHCL AppScan Enterprise web pageHCL AppScan on Cloud web pageHCL AppScan Source web page
{{IBM Software testing Divested IBM products