Static application security testing: Difference between revisions

Content deleted Content added
SAST weaknesses: Imp trans
Tags: Mobile edit Mobile web edit Advanced mobile edit
Tags: Mobile edit Mobile web edit Advanced mobile edit
Line 260:
}}</ref>
 
Scanning a large amount ofmany linelines of code with SAST tools may result in hundreds or thousands of vulnerability warnings for a single application. It generates a large number ofmany false-positives, increasing the investigation time and reducing the trust in such tools. This is particularly the case when the context of the vulnerability cannot be caught by the tool<ref>
{{Cite journal
|last1=Johnson|first1=Brittany