/plushcap/analysis/datadog/iast-datadog-application-vulnerability-management

Enhance application security in production with Datadog Application Vulnerability Management

What's this blog post about?

The modern application landscape is evolving rapidly, with new tools and technologies emerging to enable faster deployment of production code. However, this has also led to changes in the risks associated with application security, necessitating an evolution in the security discipline to adapt to new types of attacks. While Dynamic Application Security Testing (DAST) has become a widely used approach for detecting vulnerabilities, many organizations are shifting towards solutions that provide deeper visibility into production code. The challenges of using DASTs include their limited scope and "launch and wait" approach, which can create significant gaps in an organization's overall security strategy. To address these gaps, security teams need a solution that not only improves the scope of vulnerability detection but also their remediation efforts. Interactive Application Security Testing (IAST) is an instrumentation-based approach that analyzes applications in their running state and monitors requests and their interactions with each internal layer. This approach enables IASTs to integrate with existing infrastructure, continuously monitor all production traffic for vulnerabilities, and provide real-time security insights. Datadog Application Vulnerability Management uses the IAST approach to efficiently detect security vulnerabilities in production environments. It offers 100 percent coverage against the OWASP benchmark and provides the necessary context for confirming and fixing vulnerabilities. By leveraging IASTs, organizations can maintain secure, reliable production environments with continuous, code-level vulnerability detection.

Company
Datadog

Date published
Nov. 15, 2023

Author(s)
Gorka Vicente

Word count
769

Hacker News points
None found.

Language
English


By Matt Makai. 2021-2024.