Parasoft Jtest and Parasoft dotTEST Versions 10.4.2 Released
May 21, 2019

Parasoft announced the latest releases of Parasoft Jtest and Parasoft dotTEST, their Java and .NET development testing solutions that combine static analysis, security testing, unit testing, and code coverage analysis to help users maximize application quality and security, while minimizing business risks.

The new releases (10.4.2) focus on enabling DevSecOps to make security a part of the development process, and help organizations achieve continuous security and compliance with more support for security standards than ever seen before. Parasoft's security solutions integrate into the daily development workflow from the start, providing teams with continuous visibility into security standards compliance, and helping them remediate vulnerabilities earlier and continuously throughout the DevSecOps journey.

These releases broaden the scope of support for security standards, covering all of the important security recommendations. Parasoft's solutions provide pre-configured, out-of-the-box, and fully-customizable test configurations for security standards, including CWE Top 25, CWE CUSP, OWASP Top 10, PCI-DSS, and UL 2900. Developers can execute real-time security and compliance scans, directly within their development workflows in the IDE, to see potential security vulnerabilities right where they can understand and fix them prior to check-in.

In this release, Parasoft has also built into the product a broad array of context-specific training and tutorials for vulnerabilities identified in the code, to help developers learn about and address security issues as they work, enhancing their security expertise. The same security configuration or policy can also be leveraged by scans executed as part of the CI/CD pipeline, providing a safety-net to gate the delivery pipeline and ensure that insecure code does not get promoted to later stages. Bringing everything together is Parasoft's centralized reporting dashboard that dynamically demonstrates the application's security and compliance status in real-time, with widgets that directly correlate to the security standard's risk assessment framework being used, and automatic report generation for auditing.

"Due to a growing concern over data breaches, companies are now holding their software teams and vendors accountable for meeting standard application security policies to help combat these threats. Nonetheless, breaches continue to occur daily and many organizations struggle to integrate testing into their development process, and end up capturing these vulnerabilities in later stage testing, which is too late in the cycle," stated Kapil Bhandari, Product Manager at Parasoft. "Parasoft's solutions are helping organizations address this by integrating these activities early on to enable shift-left security testing and compliance. By doing so, vulnerabilities can be caught and addressed at a lower cost, and security and compliance metrics can be collected and leveraged at various times throughout development."

Share this

Industry News

January 28, 2025

Perforce Software announced the launch of AI Validation, a new capability within its Perfecto continuous testing platform for web and mobile applications.

January 28, 2025

Mirantis announced the launch of Rockoon, an open-source project that simplifies OpenStack management on Kubernetes.

January 28, 2025

Endor Labs announced a new feature, AI Model Discovery, enabling organizations to discover the AI models already in use across their applications, and to set and enforce security policies over which models are permitted.

January 27, 2025

Qt Group is launching Qt AI Assistant, an experimental tool for streamlining cross-platform user interface (UI) development.

January 27, 2025

Sonatype announced its integration with Buy with AWS, a new feature now available through AWS Marketplace.

January 27, 2025

Endor Labs, Aikido Security, Arnica, Amplify, Kodem, Legit, Mobb and Orca Security have launched Opengrep to ensure static code analysis remains truly open, accessible and innovative for everyone:

January 23, 2025

Progress announced the launch of Progress Data Cloud, a managed Data Platform as a Service designed to simplify enterprise data and artificial intelligence (AI) operations in the cloud.

January 23, 2025

Sonar announced the release of its latest Long-Term Active (LTA) version, SonarQube Server 2025 Release 1 (2025.1).

January 23, 2025

Idera announced the launch of Sembi, a multi-brand entity created to unify its premier software quality and security solutions under a single umbrella.

January 22, 2025

Postman announced the Postman AI Agent Builder, a suite empowering developers to quickly design, test, and deploy intelligent agents by combining LLMs, APIs, and workflows into a unified solution.

January 22, 2025

The Cloud Native Computing Foundation® (CNCF®), which builds sustainable ecosystems for cloud native software, announced the graduation of CubeFS.

January 21, 2025

BrowserStack and Bitrise announced a strategic partnership to revolutionize mobile app quality assurance.

January 21, 2025

Render raised $80M in Series C funding.

January 16, 2025

Mendix, a Siemens business, announced the general availability of Mendix 10.18.

January 16, 2025

Red Hat announced the general availability of Red Hat OpenShift Virtualization Engine, a new edition of Red Hat OpenShift that provides a dedicated way for organizations to access the proven virtualization functionality already available within Red Hat OpenShift.