Heads up! To view this whole video, sign in with your Courses account or enroll in your free 7-day trial. Sign In Enroll
Well done!
You have completed Introduction to Application Security!
You have completed Introduction to Application Security!
The fight for secure web apps doesnโt always have to be manual. Many existing automated tools, both open-source and paid, will help expose security flaws in your web apps and services, reveal to you what needs to be changed, and put you in a better place next time attackers come knocking.
Automated tools
- Snyk: https://snyk.io/
- Snyk YouTube Tutorials: https://www.youtube.com/channel/UCh4dJzctb0NhSibjU-e2P6w
- SonarCube: https://www.sonarqube.org/
- SecurityHeaders: https://securityheaders.io/
- Nessus/Tenable Scanner: https://www.tenable.com/products/tenable-io/web-application-scanning
-
Burp Suite and Burp Suite Scanner docs
- ZAProxy: http://www.zaproxy.org/
-
14 Best Open Source Web Application Vulnerability Scanners
Further Reading on CI/CD and Security:
CI/CD pipeline security: Know the risks and best practices, by Matt Heusser
Cloud Security for DevOps: Integrating Security into the CI/CD Pipeline, by Emmanuel Odenyire Anyira - Medium
Related Discussions
Have questions about this video? Start a discussion with the community and Treehouse staff.
Sign upRelated Discussions
Have questions about this video? Start a discussion with the community and Treehouse staff.
Sign up
You need to sign up for Treehouse in order to download course files.
Sign upYou need to sign up for Treehouse in order to set up Workspace
Sign up