AppScan Extends Developer Access

AppScan Extends Developer Access

Written By
Timothy Dyck
Timothy Dyck
Mar 31, 2003
1 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

A new package from Sanctum, released in March, will help active server pages .Net development teams catch security problems during the development process. AppScan Developer Edition 1.5—a new product despite the version number—is a customized version of the AppScan Web application security scanner I last reviewed in the middle of last year. Its been redesigned as a plug-in for Microsofts current Visual Studio .Net 2002 and upcoming Visual Studio .Net 2003 development tools.

AppScan Developer Edition works by walking through the pages in a Web application (any Web application, not just ASP.Net applications, can be scanned) to determine HTML form variables and overall structure, then exhaustively checks the site for security problems. It tries to find application errors (which are often easy to turn into security holes) by submitting cross-site scripting attacks, by trying to overflow input buffers, and by manipulating HTML parameters and cookies.

Possible problems are presented from within Visual Studio, along with general advice and example code describing how to fix the problem.

The software is priced at $995 until Aug. 1 and $1,495 thereafter. More information can be found at www.sanctuminc.com.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.