Security AppScan

Last updated
AppScan
Developer(s) HCLTech (formerly IBM)
Stable release
Version 10.0
Type Security testing
License Proprietary
Website www.hcl-software.com/appscan

HCL AppScan (previously known as IBM AppScan) is a family of desktop and web security testing and monitoring tools, formerly a part of the Rational Software division of IBM. In July 2019, the product was acquired by HCLTech [1] and is currently marketed under HCLSoftware, a product development division of HCLTech.

History

AppScan was originally developed by Israeli software company Sanctum Ltd. (formerly Perfecto Technologies) and was first released in 1998. [2] A year later, Sanctum expanded its web security service and launched an Application firewall, called AppShield. [3] The first version of AppShield was developed by a team led by Gili Raanan, and was running on a dedicated Linux server.

AppScan version 2.0 was released in February 2001, adding a policy recognition engine and knowledge database, an automatic and customizable crawler engine, and an attack simulator. [4] Version 3 was released in April 2002, adding collaborative testing capabilities, where different tasks can be assigned to different testers; and a number of user interface enhancements in both the scanning and reporting sections of the program. [5] By 2003 AppScan was used by over 500 enterprise customers and had nearly $30 Million (USD) in annual revenue. [6]

In July 2004, Sanctum was acquired by Massachusetts based company Watchfire, which developed a web applications management platform named WebXM. AppScan became Watchfire's flagship product and Sanctum's R&D center in Herzliya, Israel, became Watchfire's main R&D location. [6]

In June 2007, Watchfire was acquired by IBM and incorporated into the Rational Software product line, enabling IBM to cover more of the application development lifecycle with the addition of a new tool to help developers further bolster the security of the application itself. [7] Watchfire R&D center was incorporated into IBM R&D Labs in Israel. [8]

In 2009 IBM acquired Ounce Labs and added yet another tool to AppScan to find and correct vulnerabilities in software source code. This new version was quickly re-packaged as a separate edition of AppScan: AppScan Source Edition. [9]

In June 2019, HCL acquired select IBM collaboration, commerce, digital experience, AppScan and BigFix solutions. [10] [11]

Related Research Articles

<span class="mw-page-title-main">Informix</span> Database management software product family

Informix is a product family within IBM's Information Management division that is centered on several relational database management system (RDBMS) and multi-model database offerings. The Informix products were originally developed by Informix Corporation, whose Informix Software subsidiary was acquired by IBM in 2001.

<span class="mw-page-title-main">HCL Notes</span> Collaborative software platform

HCL Notes is a proprietary collaborative software platform for Unix, Windows, Linux and macOS, sold by HCLTech. The client application is called Notes while the server component is branded HCL Domino.

HCL Sametime Premium is a client–server application and middleware platform that provides real-time, unified communications and collaboration for enterprises. Those capabilities include presence information, enterprise instant messaging, web conferencing, community collaboration, and telephony capabilities and integration. Currently it is developed and sold by HCL Software, a division of Indian company HCL Technologies, until 2019 by the Lotus Software division of IBM.

<span class="mw-page-title-main">HCLTech</span> Indian multinational technology company

HCL Technologies Limited, doing business as HCLTech, is an Indian multinational information technology (IT) consulting company headquartered in Noida. Founded by Shiv Nadar, it was spun out in 1991 when HCL entered into the software services business. The company has offices in 52 countries and over 225,944 employees.

<span class="mw-page-title-main">IBM Israel</span> Globally integrated enterprise

IBM is a globally integrated enterprise operating in 170 countries. IBM's R&D history in Israel began in 1972 when Professor Josef Raviv established the IBM Israel Scientific Center in the Technion's Computer Science Building in Haifa. Today, over 1000 individuals work at IBM R&D locations across Israel, including Haifa, Tel Aviv, Herzliya, Rehovot, and the Jerusalem Technology Park. IBM research and development activities in Israel include a number of labs.

<span class="mw-page-title-main">Mercury Interactive</span> Israeli company

Mercury Interactive Corporation was an Israeli company acquired by the HP Software Division. Mercury offered software for application management, application delivery, change and configuration management, service-oriented architecture, change request, quality assurance, and IT governance.

The original Bobby was a free online tool, written by Josh Krieger and provided by the Centre for Applied Special Technology (CAST), used to validate websites for WAI and Section 508 compliance. Launched in 1995, it became well known for the usage of the Bobby Approved icon that website authors could use to indicate they have successfully passed the Bobby online test. Development was coordinated by Chuck Hitchcock, CAST's Chief Officer of Policy and Technology, and further developed by David Clark and Michael Cooper.

Dynamic program analysis is the act of analyzing software that involves executing a program – as opposed to static program analysis, which does not execute it.

Rational Rhapsody, a modeling environment based on UML, is a visual development environment for systems engineers and software developers creating real-time or embedded systems and software. Rational Rhapsody uses graphical models to generate software applications in various languages including C, C++, Ada, Java and C#.

IBM's Cross System Product (CSP) was an application generator intended to create online systems on IBM's mainframe platforms. Introduced in 1981, CSP consisted of a set of source code generators that allowed developers to interactively define, test, generate, and execute application programs. CSP was composed of two products:

Tealeaf was a company providing analytics software for web and mobile applications.

HP Application Security Center (ASC) was a set of technology solutions by HP Software Division. Much of the portfolio for this solution suite came from HP's acquisition of SPI Dynamics. The software solutions enabled developers, quality assurance (QA) teams and security experts to conduct web application security testing and remediation. The security products have been repackaged as enterprise security products from the HP Enterprise Security Products business in the HP Software Division.

HCL Commerce Cloud is a software platform framework for e-commerce, including marketing, sales, customer and order processing functionalit. WebSphere Commerce is built on the Java - Java EE platform using open standards, such as XML, and Web services. Formerly a product of IBM, the product was sold to HCL Technologies in July 2019.

<span class="mw-page-title-main">Protecode</span> Canadian software company

Protecode was a private company based in Ottawa, Ontario, Canada that provided open source license and security management software used for software development license compliance.

Avira Operations GmbH & Co. KG is a German multinational computer security software company mainly known for its Avira Free Security antivirus software. Although founded in 2006, the Avira antivirus application has been under active development since 1986 through its predecessor company H+BEDV Datentechnik GmbH. Since 2021, Avira has been owned by American software company NortonLifeLock, which also operates Norton, Avast and AVG. It was previously owned by investment firm Investcorp.

Perforce Software, Inc. is an American developer of software used for developing and running applications, including version control software, web-based repository management, developer collaboration, application lifecycle management, web application servers, debugging tools and agile planning software.

<span class="mw-page-title-main">Gili Raanan</span> Israeli inventor

Gili Raanan is an Israeli venture capitalist and one of the inventors of CAPTCHA, the WAF and many other inventions in the fields of application security and discovery. Raanan started Sanctum in 1997, and invented the first Web application firewall AppShield and the first Web application penetration testing software AppScan. He later started NLayers which was acquired by EMC Corporation pioneering the science of Application discovery and understanding. He is an investor and a General Partner at Sequoia Capital, the Founder of Cyberstarts, and was a board member at Adallom, Armis Security, Onavo, Moovit, and Innovid (NYSE:CTV).

Sanctum was a Santa Clara, California-based information technology company focused on application security. Sanctum offered a firewall, AppShield, and scanner, AppScan, for application-layer security for Web environments.

References

  1. Kwan, Campbell. "HCL now fully controls IBM software including Notes and Domino". ZDNet. Retrieved 2019-09-16.
  2. "Perfecto Technologies Becomes Sanctum, Inc.; Pioneering Automated Web Application Control and Security Changes Name". BusinessWire. 21 June 2000.
  3. Ellen Messmer (7 September 1999). "New tool blocks wily e-comm hacker tricks". CNN. Retrieved 17 November 2010.
  4. Mimoso, Michael S. (6 February 2001). "AppScan release secures Web applications". SearchSecurity.
  5. Costello, Sam (30 April 2002). "Sanctum boosts tests, reports in AppScan 3.0". Computerworld.
  6. 1 2 "Sanctum acquired by Watchfire". Israel Venture Capital Research Center. 26 July 2004. Archived from the original on 10 August 2007.
  7. Ogren, Eric (8 June 2007). "AppScan lives on with IBM". Computerworld. Archived from the original on 31 January 2011.
  8. "Watchfire Israel goes to IBM". Globes. 7 June 2007.
  9. Rick, Whiting (8 June 2010). "IBM: Design Security Into New Applications During Development". CRN.
  10. HCL Technologies to acquire select IBM software products
  11. HCL Technologies to Acquire Select IBM Software Products for $1.8B