Noname Security Releases Active Testing V2
June 21, 2023

Noname Security announced the general availability of Active Testing V2 to help organizations leave no API untested.

Building on the success of the original version of Active Testing, the latest version helps industry leaders to further “shift left” to stop vulnerabilities from reaching production, innovate faster, and ensure compliance with evolving regulatory requirements.

Noname Security Active Testing is a purpose-built API security testing solution that helps organizations easily add API security into their application development process, including continuous integration/continuous deployment (CI/CD) integration, dynamic or static API specification analysis, and more. Built to complement existing security tooling and processes, Active Testing helps organizations to:

- Leave no API untested with a unique ability to find and test every API based on an understanding of the application’s business logic.

- Shift left with integrations into the entire software development lifecycle (SDLC). Teams get dynamic API visibility across multiple states and environments throughout the CI/CD process.

- Empower developers with best-in-class usability such as simple setup and automation, in-line test results, and contextual guidance for request failure mitigation.

“Testing the security of APIs in development makes good financial sense,” said Shay Levi, CTO & Co-Founder of Noname Security. “Fixing issues earlier in an API’s lifecycle can reduce remediation costs by 10x to 100x. With rising costs of re-writing code, regulatory fines, delays to new products, brand impacts, and the drops in shareholder value after breaches, it’s no surprise that industry-leaders are actively addressing API security in development.”

Built from the ground up to specifically address the challenges of testing APIs for security vulnerabilities, Noname Security Active Testing includes:

- Developer-friendly user experience for full coverage and adoption.

- Easy integration with development processes, including CI/CD pipelines, dynamic and static specification analysis, and more.

- 160+ security tests of business-logic exploits, including the OWASP API Top Ten.

- Reachability to adapt to the unique business logic of APIs and applications.

- API lifecycle and environment awareness to easily identify when vulnerabilities are introduced and prioritize review.

- Support for all major API types, including GraphQL.

In addition to Active Testing, Noname Security continues to innovate across the entire Noname API Security Platform, including additional capabilities for securing Kubernetes clusters, eBPF functionality, inline remediation options, integrations, and further AI/ML customization.

Share this

Industry News

February 03, 2025

Linux Foundation Europe and OpenSSF announced a global joint-initiative to help prepare maintainers, manufacturers, and open source stewards for the implementation of the EU Cyber Resilience Act (CRA) and future cybersecurity legislation targeting jurisdictions around the world.

January 30, 2025

OutSystems announced the general availability (GA) of Mentor on OutSystems Developer Cloud (ODC).

January 30, 2025

Kurrent announced availability of public internet access on its managed service, Kurrent Cloud, streamlining the connectivity process and empowering developers with ease of use.

January 29, 2025

MacStadium highlighted its major enterprise partnerships and technical innovations over the past year. This momentum underscores MacStadium’s commitment to innovation, customer success and leadership in the Apple enterprise ecosystem as the company prepares for continued expansion in the coming months.

January 29, 2025

Traefik Labs announced the integration of its Traefik Proxy with the Nutanix Kubernetes Platform® (NKP) solution.

January 28, 2025

Perforce Software announced the launch of AI Validation, a new capability within its Perfecto continuous testing platform for web and mobile applications.

January 28, 2025

Mirantis announced the launch of Rockoon, an open-source project that simplifies OpenStack management on Kubernetes.

January 28, 2025

Endor Labs announced a new feature, AI Model Discovery, enabling organizations to discover the AI models already in use across their applications, and to set and enforce security policies over which models are permitted.

January 27, 2025

Qt Group is launching Qt AI Assistant, an experimental tool for streamlining cross-platform user interface (UI) development.

January 27, 2025

Sonatype announced its integration with Buy with AWS, a new feature now available through AWS Marketplace.

January 27, 2025

Endor Labs, Aikido Security, Arnica, Amplify, Kodem, Legit, Mobb and Orca Security have launched Opengrep to ensure static code analysis remains truly open, accessible and innovative for everyone:

January 23, 2025

Progress announced the launch of Progress Data Cloud, a managed Data Platform as a Service designed to simplify enterprise data and artificial intelligence (AI) operations in the cloud.

January 23, 2025

Sonar announced the release of its latest Long-Term Active (LTA) version, SonarQube Server 2025 Release 1 (2025.1).

January 23, 2025

Idera announced the launch of Sembi, a multi-brand entity created to unify its premier software quality and security solutions under a single umbrella.