openPR Logo
Press release

Parasoft Releases Support for Brand New 2019 CWE Guidelines

12-02-2019 05:35 PM CET | IT, New Media & Software

Press release from: Parasoft Corp.

/ PR Agency: PR-Agentur Lorenzoni GmbH
Parasoft Releases Support for Brand New 2019 CWE Guidelines

MONROVIA (USA)/Berlin, November 19, 2019 - Parasoft, the global leader in automated software testing, today announced complete support for the newly updated 2019 Common Weakness Enumeration (CWE) Top 25 and "On the Cusp" (an additional 15 weaknesses) for C, C++, Java, and .NET languages. With the latest releases of their software testing products Parasoft Jtest, Parasoft dotTEST, and Parasoft C/C++test, Parasoft is the only vendor to cover all of these critical security guidelines, enabling organizations to achieve continuous security and compliance to prevent the most dangerous of software errors.
Learn more about Parasoft’s support for the CWE Top 25 and "On the Cusp" rules here.

The CWE is a comprehensive list of over 800 programming errors, design errors, and architectural errors that can lead to exploitable vulnerabilities. Previously updated in 2011, the 2019 CWE Top 25 Most Dangerous Software Errors is a targeted list of the most widespread and critical errors that can be exploited to create the most serious security consequences in software. Since its release, the Top 25 list has been a widely adopted security standard throughout a variety of industries, along with the CWE’s somewhat lesser-known "On the Cusp" list. For organizations that are serious about cybersecurity, these additional 15 items are the next step in AppSec, after getting the Top 25 under control. For teams working with IoT or medical devices, both the Top 25 and "On the Cusp" are also an integral part of UL 2900 (Software Cybersecurity for Network-Connectable Products) compliance, recognized by the FDA for network-connected medical device cybersecurity.
Parasoft provides full support for CWE, with its latest releases supporting the new generation of the 2019 CWE Top 25. Parasoft’s CWE Compliance Packs for C/C++, Java, and .NET provide pre-configured, out-of-the-box, and fully customizable test configurations and reporting for the CWE Top 25 and CWE CUSP security standards. Parasoft’s solution is certified CWE-Compatible, so users can easily understand which static analysis checker is associated with which CWE item during configuration, remediation, and reporting. With Parasoft’s unique CWE-centric model, all the checkers are named based on the associated CWE ID, removing the need for time-consuming mapping when configuring, reporting, and remediating issues. Parasoft’s unique real-time feedback gives users a continuous view of compliance with the CWE, by providing interactive compliance dashboards, widgets, and reports that have the CWE risk technical impact implemented right within the dashboard itself.

Having traditionally been constructed through aggregating survey responses from a wide selection of organizations on weaknesses considered to be the most prevalent or important, CWE’s recently-announced new generation of the Top 25 and "On the Cusp" lists have used a more objective data-driven process that leverages information Common Vulnerability Enumeration (CVE), NIST, and from the National Vulnerability Database (NVD). This information takes into account the Common Vulnerability Scoring System (CVSS) score of each vulnerability or CVE, including information about how prevalent a particular vulnerability is, how difficult it might be for an attacker to exploit it, and the impact of the damage they could cause by exploiting it.

"The additional information provided in the 2019 update will help organizations objectively understand which items are likely to cause the most harm, making the 2019 CWE Top 25 and 'On the Cusp' more effective for cybersecurity," explained Arthur Hicken, security expert at Parasoft. "Using a SAST tool that covers the entirety of these two lists will help ensure that your software is as secure as possible. Parasoft’s complete CWE support and powerful reporting and analytics system helps our customers not only catch security vulnerabilities before they release, but address core root-cause security problems to harden the code."

Parasoft’s C/C++, Java, and .NET unified testing solutions provide the broadest support for the CWE Top 25 and "On the Cusp" security standards. Parasoft’s unique CWE-centric model provides users with the ability to connect static analysis findings to CWEs without any tedious mapping, or extra effort that is required from other tools.

Parasoft Corp. Headquarters, 101 E. Huntington Drive, Monrovia, CA 91016, USA
www.parasoft.com, info@parasoft.com

Press Contacts:
Parasoft Corp., Erika Barron, Tel. +1-626-275-2434; erika@parasoft.com

Agentur Lorenzoni GmbH, Public Relations, Landshuter Str. 29, 85435 Erding; www.lorenzoni.de,
Beate Lorenzoni, Tel: +49 8122 55917-22; beate@lorenzoni.de

About Parasoft:
Parasoft provides innovative tools that automate time-consuming testing tasks and provide management with intelligent analytics necessary to focus on what matters. Parasoft technologies reduce time, effort, and cost of delivering secure, reliable, and compliant software, by integrating static and runtime analysis; unit, functional and API testing; and service virtualization. Parasoft supports software organizations as they develop and deploy applications in the embedded, enterprise and IoT markets. With developer testing tools, manager reporting/analytics and executive dashboarding, Parasoft enables organizations to succeed in today’s most strategic development initiatives – agile, continuous testing, DevOps, and security.

This release was published on openPR.

Permanent link to this press release:

Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.

You can edit or delete your press release Parasoft Releases Support for Brand New 2019 CWE Guidelines here

News-ID: 1874782 • Views: 158

More Releases from Parasoft Corp.

Parasoft Introduces to Market a Radical New Approach to Test Data Management
Monrovia (USA), Berlin – 8 May 2019 - Parasoft, the global leader in automated software testing and continuous quality, today announced the latest releases of Parasoft SOAtest and Parasoft Virtualize, with a new web interface for managing and generating test data. The new approach is simple to use and understand, makes it easy for users to get the data they need for testing, and helps businesses eliminate the cost of
Parasoft Streamlines AUTOSAR Compliance and Reporting
Monrovia (USA) - February 26, 2019 – Parasoft, the global leader in automated software testing, today announced the latest release of Parasoft C/C++test, their unified C and C++ development testing solution for embedded applications. The Parasoft C/C++test 10.4.2 release continues the product’s recent focus on reducing the manual burden of coding standards compliance and providing the most complete solution for testing C and modern C++ code. With this release, Parasoft
Parasoft Streamlines AUTOSAR Compliance and Reporting
Parasoft, the global leader in automated software testing, today announced the latest release of Parasoft C/C++test, their unified C and C++ development testing solution for embedded applications. The Parasoft C/C++test 10.4.2 release continues the product’s recent focus on reducing the manual burden of coding standards compliance and providing the most complete solution for testing C and modern C++ code. With this release, Parasoft C/C++test introduces the industry’s most comprehensive testing
Parasoft Named Transformational Vendor of Service Virtualization Technology by L …
October 16, 2018 – Monrovia (USA) – Parasoft, the market leader in automated testing, announced today that it has been rated a Transformational vendor in the voke, inc. Market Mover ArrayTM Report on Service Virtualization. Parasoft’s rating is due to its “innovative and user-centric approach to service virtualization in areas such as test data management and AI.” To access the report, please visit: https://alm.parasoft.com/voke-market-mover-array-report-service-virtualization The voke report defines Transformational vendors

All 5 Releases


More Releases for CWE

Global Chip On Flex (COF) Market 2019 Industry Insights and Major Players are - …
The recently published market study Global Chip On Flex (COF) Market Research Report 2019-2024 by Market Research Place covers industry’s new upgrades, current market pilots, standardization, opportunities, technical domain, and remarkable trends. The report studies existing competitive condition of industry focusing on the key players, geographical regions, challenges, opportunities, trends, challenges, types, and applications of the market along with the forecast period (2019-2024). The well-designed report serves an all-inclusive field
Chip on Flex (COF) Market Key Players : AKM Industrial, Chipbond Technology, Com …
Chip-on-Flex, or COF, refers to the semiconductor wherein the microchip is specifically mounted on and electrically associated with a flexible circuit (a circuit-based on an adaptable substrate rather than the typical printed circuit board). The chip on flex market is divided into type, application, verticals, and geography. The type is further divided into single sided chip on flex and others. The application is segmented into static and dynamic. The verticals are
Chip On Flex Market 2017-2021 Global Leaders: CWE, Stemko Group, Flexceed, Compu …
Market Research Future published a research report on “Global Chip On Flex Market Research Report- Forecast to 2021” – Market Analysis, Scope, Stake, Progress, Trends and Forecast to 2021. Market Highlights Chip On Flex Market is expected to grow at CAGR of ~4.43% during the forecast period and expected to reach market size of US ~$1795 Million by the end of forecast period. Chip On Flex is also known as direct chip
Chip On Flex Market Analysis by Global Leaders: Compunetics, AKM industrial comp …
Market Research Future published a research report on “Global Chip On Flex Market Research Report- Forecast to 2021” – Market Analysis, Scope, Stake, Progress, Trends and Forecast to 2021. Market Scenario: Chip-on-Flex refers to the semiconductor assembly technology wherein the microchip or die is directly mounted on and electrically connected to a flexible circuit which is a circuit built on a flexible substrate instead of the usual printed circuit board. The shorter
Chip-On-Flex Market Professional Survey Report 2017: LGIT Corporation, Flexceed, …
Qyresearchreports include new market research report Global Chip-On-Flex Market Professional Survey Report 2017 to its huge collection of research reports. The general market for Chip-On-Flex has been seen on a couple of perspectives that are inside and out that truly matters there, and have repaired the market circumstance to the mammoth degree. The report in like way indicates unmistakable experience and information related to general Chip-On-Flex market. The key elucidation behind
Global Chip On Flex (COF) Market Analysis & Forecast to 2022: LGIT, Stemco, Flex …
Global Chip On Flex (COF) Market Professional Survey Report 2017 is latest research study released by HTF MI evaluating the market, highlighting opportunities, risk side analysis, and leveraged with strategic and tactical decision-making support. The study provides information on market trends and development, drivers, capacities, technologies, and on the changing capital structure of the Global Chip On Flex (COF) Market. Get Access to sample pages @ https://www.htfmarketreport.com/sample-report/491247-global-chip-on-flex-5 Global Chip