+ Tools
RASAR
RAM Laboratories is developing the Real-time Application Security Analyzer (RASAR). RASAR provides analysis of vulnerabilities in source code and binaries through the use of Abstract Syntax Trees (ASTs) and Control Flow Graphs (CFGs) to identify areas of developed software that can be subverted. RASAR can be used off-line in the development process or as part of a virtual machine sandbox to analyze the running binary code. The deployment implementation of RASAR is used with intrusion detection tools to correlate malicious threats with known vulnerabilities.