Black Duck Home Page
Black Duck Home Page
  • 软件质量与安全支持
  • English
  • 日本語
  • 简体中文
close search bar

抱歉,尚不支持此语言

close language selection
  • English
  • 日本語
  • 简体中文
  • 解决方案
  • 产品
  • 服务
  • 资源
  • 博客
  • 公司
  • 联系销售

公司

go back

关于Black Duck

  • 领导
  • 新闻
  • 微博
  • 合作伙伴
  • 职业生涯
  • 办公室地址
  • 联系销售
Gartner Magic Quadrant

2023年Gartner应用安全测试魔力象限报告 了解原因

Forrester Wave Leader 2023 SAST Recognition

Forrester Wave SAST 领导者 了解原因

Forrester Wave Leader 2023 Software Analysis

Forrester Wave SCA 领导者 了解原因

  • Leadership | Meet the team guiding Black Duck's vision and strategy.
  • Newsroom | Latest news, press releases, and media coverage about Black Duck.
  • Blog | Insights, updates, and expert opinions on application security.
  • Partners | Information on Black Duck's partnerships and collaboration opportunities.
  • Careers | Explore job opportunities and career paths at Black Duck.
  • Contact Sales | Get in touch with our sales team for product inquiries and consultations.
close sub navigation

产品

go back

集成SasS平台

  • Polaris Platform
  • fAST Static
  • fAST SCA
  • fAST Dynamic

工具

  • Coverity静态分析
  • Black Duck软件组成分析
  • 持续动态分析
  • Seeker交互式应用安全测试
  • SRM软件风险态势管理
  • Defensics 协议模糊测试

集成

  • Code Sight IDE插件
  • SCM集成
  • 构建和持续集成工具
  • 开发人员工作流集成
  • 第三方AST工具集成
  • 云部署集成
Gartner Magic Quadrant 2023年Gartner应用安全测试魔力象限报告 了解原因
  • Polaris Platform | Unified platform for managing software security and compliance.
  • fAST Static | Unified platform for managing software security and compliance.
  • fAST SCA | Unified platform for managing software security and compliance.
  • fAST Dynamic | Unified platform for managing software security and compliance.
  • Coverity Static | Static analysis tool for detecting software defects and vulnerabilities.
  • Black Duck SCA | Software composition analysis to manage open source security and license compliance.
  • WhiteHat Continuous Dynamic | Continuous dynamic application security testing.
  • Seeker Interactive | Interactive application security testing tool for detecting vulnerabilities.
  • Software Risk Manager ASPM | Application security posture management tool for risk management.
  • Defensics Protocol Fuzzing | Protocol fuzzing tool to identify and fix security flaws.
  • Code Sight IDE Plug-in | Integrated development environment plug-in for real-time security feedback.
  • SCM Integrations | Source code management integrations for seamless security checks.
  • Build & CI Tool Integrations | Integrations with build and continuous integration tools.
  • Developer Workflow Integrations | Tools to integrate security into the developer workflow.
  • 3rd-Party AST Tool Integrations | Integrations with third-party application security testing tools.
  • Cloud Deployment Integrations | Integrations for securing cloud deployments.
  • Open Source & Security Audits | Comprehensive technical due diligence services for M&A.
close sub navigation

解决方案

回去

用例

  • AI 生成的代码
  • 应用安全测试
  • AppSec计划整合
  • API 安全测试
  • DevSecOps
  • 软件供应链安全
  • 管理AppSec风险
  • 云与容器安全
  • 开源许可合规
  • 合并与收购
  • 质量与安全标准合规

按技术

  • 静态分析
  • 软件组成分析
  • 动态分析
  • 交互式应用安全测试
  • 托管渗透测试
  • 移动应用安全测试 (MAST)
  • 应用安全态势管理
  • 协议模糊测试

按行业

  • 汽车
  • 金融服务
  • 物联网与嵌入式设备
  • 医疗设备
  • 公共部门

按团队

  • 开发和开发运维团队
  • 安全团队
  • 法务团队
  • AI-generated code | Harness the power of AI coding assistants while managing the risks.
  • API Security Testing | Manage software risks with a holistic API security testing program.
  • AppSec Consolidation | Simplify your application security program
  • Application Security Testing | Solutions to address security risks at all stages of the application life cycle.
  • DevSecOps | Solutions to help shift security left without slowing down your development teams.
  • Software Supply Chain Security | Solutions to identify and manage software supply chain risks end-to-end.
  • Manage AppSec Risk | Scale your application security program without increasing complexity or adding friction.
  • Cloud & Container Security | Optimize your applications for secure deployment and operation in the cloud.
  • Open Source License Compliance | Effective solutions for ensuring open source license compliance.
  • M&A Due Diligence | Identify software risks that could negatively impact the value of acquired IP.
  • Quality & Security Standards Compliance | Ensure your software complies with the standards critical to customers and regulators.
  • Static Analysis (SAST) | Analyzing code for security vulnerabilities without executing it.
  • Software Composition Analysis (SCA) | Analyzing software components for security and license compliance.
  • Dynamic Analysis (DAST) | Testing running applications for security vulnerabilities.
  • Interactive Analysis (IAST) | Real-time security testing during application execution.
  • Penetration Testing | Simulated cyberattacks to identify vulnerabilities.
  • Mobile Application Security Testing (MAST) | Ensuring the security of mobile applications.
  • Application Security Posture Management (ASPM) | Managing and improving application security posture.
  • Fuzz Testing | Identifying vulnerabilities by inputting random data to applications.
  • Automotive | Security solutions for automotive industry applications.
  • Financial Services | Security solutions tailored for financial services.
  • IoT & Embedded | Security for Internet of Things and embedded systems.
  • Medical Device | Security solutions for medical devices.
  • Public Sector | Security solutions for government and public sector organizations.
  • Dev and DevOps Teams | Security tools and practices for development and DevOps teams.
  • Security Teams | Solutions and support for dedicated security teams.
  • Legal Teams | Resources and compliance tools for legal teams.
close sub navigation

服务

回去

测试服务

  • 应用安全测试
  • 托管渗透测试
  • 移动应用安全测试 (MAST)

项目服务

  • 威胁与风险评估
  • 应用安全项目策略
  • 软件安全培训
  • 实施&部署

审计服务

  • 开源和安全审计
Gartner Magic Quadrant 2023年Gartner应用安全测试魔力象限报告 了解原因
  • Security Testing Services Overview | Summary of the security testing services offered.
  • Penetration Testing | Simulated cyberattacks to identify vulnerabilities in your systems.
  • Mobile Application Security Testing (MAST) | Ensuring the security of mobile apps against threats.
  • Threat & Risk Assessments | Evaluation of potential security threats and vulnerabilities<./li>
  • Program Strategy & Planning | Developing effective strategies for your security program.
  • Security Training | Courses and workshops to enhance your security skills and knowledge.
  • Implementation & Deployment | Assistance with deploying and integrating security solutions.
  • Open Source & Security Audits | Evaluations of open source components and overall security posture.
close sub navigation

资源

回去

最近更新

  • 新闻
  • 微博
  • 概述

客户资源

  • 软件质量与安全支持
  • 文档
  • Black Duck学院
  • 搜索知识库
  • 社区问答

其他资源

  • 产品单页
  • 案例
  • 分析师报告
  • 术语表
  • 内容库
Gartner Magic Quadrant 2023年Gartner应用安全测试魔力象限报告 了解原因
  • Newsroom | Latest news, press releases, and media coverage about Black Duck.
  • Blog | Insights, updates, and expert opinions on application security.
  • Cybersecurity Research Center | In-depth studies and findings on cybersecurity topics.
  • Support | Assistance and troubleshooting for Black Duck products and services.
  • Documentation | Detailed guides and manuals for using Black Duck products.
  • Black Duck Academy | Educational courses and training on application security.
  • Search Knowledge Base | Find answers and solutions in our extensive knowledge repository.
  • Community Q&A | Engage with other users and experts to get your questions answered.
  • eBooks | Downloadable resources on various application security topics.
  • Case Studies | Real-world examples of how customers use Black Duck solutions.
  • Research & Reports | Comprehensive reports and analysis on industry trends.
  • AppSec Glossary | Definitions and explanations of common application security terms.
  • Resource Library | A collection of all available resources and materials.
close sub navigation
  • 软件质量与安全
    • Continuous Dynamic
    • 服务
  • 资源

通过Coverity将安全内建到您的SDLC中

下载报告

供应链弹性

下载报告
Black Duck Home Page

关注

管理订阅 管理Cookie设置 800 District Ave. Ste 201
Burlington, MA 01803

联系我们

解决方案

  • AI 生成的代码
  • API 安全测试
  • AppSec计划整合
  • 应用安全测试
  • DevSecOps
  • 软件供应链安全
  • 管理AppSec风险
  • 云与容器安全
  • 开源许可合规
  • 合并与收购
  • 质量与安全标准合规

产品与服务

  • AppSec软件即服务平台
  • 静态分析
  • 软件组成分析
  • 交互式应用安全测试
  • 动态分析
  • 托管渗透测试
  • 协议模糊测试
  • 应用安全项目策略
  • 威胁与风险评估

支持

  • 社区
  • 资料文献
  • 产品教育
  • 软件安全培训
  • 附加服务

资源

  • 资源中心
  • 网络研讨会
  • 演示
  • 分析师报告
  • 产品单页
  • 白皮书
  • Blog

了解更多

  • 关于我们
  • 联系销售
  • 案例
  • 消息
  • 招聘信息
  • 术语表

法律声明

  • 协议
  • 隐私
  • 安全
©2025 Black Duck Software, Inc. All Rights Reserved