Customers: Astra Group of Companies Moscow; Information Technology Contractors: Rostelecom-Solar (formerly Solar Security) Product: Solar appScreener (formerly Solar inCode)Project date: 2022/11 - 2023/06
|
2023: Using Solar appScreener
Astra Group uses the Solar appScreen analyzer as a tool to identify and fix errors and vulnerabilities. With its help, Astra Group of Companies checks the source code of system and application software, as well as server and web applications for customers. Rostelecom-Solar (formerly Solar Security) announced this on June 29, 2023.
In the near future, the analyzer will be integrated into the secure software development process as an automated solution. Solar appScreener integrates with repositories, development environments, bug tracking systems, and other tools used in software creation.
Many software companies have become more demanding to validate code for vulnerabilities. This is necessary even at the earliest stages of product creation, and ideally at all stages of this cycle as part of a single automated process, "said Daniil Chernov, director of the Solar appScreen Center of RTK-Solar. - Using all available code analysis methods helps to maximize software security. For IT products that are recommended when working with personal data, CII objects, restricted information, this is critical. |
Among the advantages of Solar appScreen, Astra Group noted a lower number of false positives compared to other analyzers. To minimize their number, the solution implements its own patented Fuzzy Logic Engine technology. In addition, the combination of static and dynamic code analysis within a single Solar appScreener interface and the ability to correlate their results help improve the quality of validation.
When choosing a solution to improve code security, we tested various products, but Solar appScreener showed the highest results, "said Maxim Fokin, Director of Information Security at Astra Group. - Other tools we used in the testing failed to identify a number of designs that Solar appScreener discovered. |
Astra Group experts also appreciated the ability to analyze code that is written in interpreted programming languages. Solar appScreener supports 36 programming languages, being the world leader in this indicator. The solution automatically determines the language in which the code is written, and also knows how to analyze programs written in different languages.