What scanning Security Audit software do you use?

I am researching APEX security audit tools. I knew Enkitec eSert but looks like it is not available any longer. I also found ApexSec but few things. I searched here as well but see no real list of recommended tools to analyze your application / security vulnerabilities, so I ask myself the question in the case: that you use to perform security /vulnerability audits of your APEX Applications? Looking for idea is looking more far. Any input would be appreciated.

Hello

There are several tools that can help you (sorry if I missed it)

ApexSec online is free - ApexSec Online

The Adviser of the APEX - contains a few security checks

The QA - QA - region-Plugin plugin

The packaged integrated application "Application standards Tracker.

eSERT - as you say, this seems to have been abandoned, links to the cloud version no longer works.

Also advise and the ApexSec, the other two are a framework where you can insert your own SQL to query the metadata of the APEX for security issues. But you will need to provide the queries. Some controls are not difficult, such as the verification of all pages have session state protection, other controls are extremely difficult.

I could tell several great things on ApexSec but I'm extremely biased so you should just try and draw your own conclusions.

Hope this helps

Tags: Database

Similar Questions

  • What graphic/photo editing software do you use with dreamweaver?

    I bought Dreamweaver CS5 a few days ago.

    I use the demo version of Fireworks CS5 and have played around with the demo version of photoshop element 8.

    I wonder if I would be able to do everything with photoshop CS5, I'm able to do in Fireworks CS5 and photoshop elements.

    Guess I could ask this question in the forum of photoshop, but I really want to hear from developers and designers who use dreamweaver too.

    What would you suggest to use for a graphic/photo editing program.

    Thank you

    JP

    I do print design, illustrations, photos and web Photoshop and Illustrator are tools of my trade.

    I opened Fireworks, once and never watched it again.  It is not that the FW is a product of inferior quality or anything, I'm just more comfortable with PShop.

    One thing, I'll give you credit of fireworks, their PNG compression is far superior to Photoshop.

    Nancy O.
    ALT-Web Design & Publishing
    Web | Graphics | Print | Media specialists
    http://ALT-Web.com/
    http://Twitter.com/ALTWEB

  • What is my Skype Id when you use facebook connect

    What is my Skype id when you use facebook connect I can not find not to give people to connect to me thank you very much

    Traore can use your generic name of Skype:

    Facebook:yourname

    where yourname is the name you use to log into Facebook.

  • What are the supported items when you use multiple suites?

    Hi all

    I created a plugin that sends the current path to a url,

    his work very well with debugging in Visual studio 2005 and then it is added to the Adobe Illustrator work only once.

    Its transmission, the path is that for a single file. While I was trying for the second time its does not work

    I use more costumes in my plugin

    AIDocumentSuite

    AIFilePathSuite

    AIActionManagerSuite

    AIUnicodeStringSuite

    AIURLSuite

    I use the "'AIURLSuite ' to call the url and calls the url several times while its used only and its only works once with multiple suites. "

    What are the supported items when you use multiple suites? It is necessary to release all the variables and the suites after completing the task?

    Should they come out in the same order in which they are acquired?

    Thanks in advance

    Farida kaid

    As far as I know, there is nothing forcing you to unleash in the same or in front of the order in which you have acquired in. Frankly, in our plugin gain us once, then lock the plugin to prevent it from unloading and don't release suites when we finished. That said, as far as I know, you should be fine to learn/work/output several times.

  • What software do you use for mapping campaign?

    Do you have your canvas to map your campaign? Using visio? Illustrator? In the early stages of the campaign when you went through with the team and you want to provide a Visual map of campaign/flowto your management team or of administrator you what do you use?

    I use Visio and follow the same process as jennifer.gonzalez for the revision of flow with my team. It is an easy to use, too.

  • What event will be triggered when you use your finger to scroll the screen?

    I want to do the scrolling list, now I can do this by using the mouse to drag, but how do I apply it by using your finger to scroll?

    The question is that I don't know when you use your finger to scroll the screen, what event will trigger?

    Please help me if there is no solution?

    You can use the same code as the mouse. Mouse events are also triggered when you use a finger on a touch screen. However, if you want more features, for, etc. example pinching to the zoom, you'll have to watch the TouchEvent class.

    App playbook: Car accident 

  • What is the best software "free" to use to compare changes in the registers?

    I'm trying to solve a problem with an upgrade and want to compare changes to records and just see the software modifications during the upgrade.

    The question is this - just in case someone encountered this before - I have improved our management system of documents as well as a few other third-party software packages, and now we are unable to use Office 2010 file | Save and send. Send as an attachment on some of our forms.  The attachment is deleted from the e-mail or any information that has been entered in the form is deleted.

    Recently, I * found this Microsoft Windiff compare folders and files , but have not yet had the chance to try it.

    The author of this article said that the investigation on the changes of the registry using the WinDiff utility is its more common use of the tool.

    an hour ago & a half about

  • What power of the Diffie-Hellman encryption and authentication hash group do you use?

    Hi guys,.

    I just want to understand what people are using and prefer the investigation.

    • Diffie-Hellman group do you use or do you think is enough?
    • What Type of encryption & bits do you use?
    • What Type of hash & bits do you use?
    • Do you use the same parameters for Phase 2?
    • Do you use the Diffie-Hellman PFS for Phase 2 group?

    To make things more neat, you can respond to the following format:

    Phase 1 ISAKMP policy

    • Diffie-Hellman Group 5
    • AES 128
    • SHA 384

    IPSec policy phase 2

    • No PFS
    • AES 256
    • SHA 256

    Andrew,

    Cisco's perspective on what the client should work at least.

    http://www.Cisco.com/Web/about/security/intelligence/nextgen_crypto.html#16

    M.

  • If you use Firefox, a popup box McAfee indicates that a program (Firefox) wants to access. Is it legitimate, or is it a fake?

    I use the Internet in McAfee security system. When you use Firefox, a pop-up dialog box appears indicating that a program on my PC is trying to accept incoming connections from the Internet. It indicates that the program is located in C:\program files\mozilla firefox\firefox.exe to Firefox. Recommendation of the dialog is "unknown program." My choices are "always allow", "allow once", or "blocked". I can continue to do what I was doing on Firefox without clicking on one of the 3 choices, but the dialog box does not go far.

    I'm afraid to choose "always allow" as this never happened in the two years I'm using Firefox until I started having problems with my computer (virsuses) about a week ago. Please notify.

    If you think your computer has a virus on it, you shouldn't ignore the fact and switch to another browser.

    You must get the virus removed. The virus may record personal information.

    I would say that the guest you have received is a prompt genunine for Firefox. The location you said "c:\Program Files\Mozilla Firefox\Firefox.exe" is genunine for Firefox.

    You probably receive this prompt because Firefox has been updated about a week ago. Version 6.0.2 is out and your security this McAfee product identifies as a different program. Yes, it's always Firefox, but a newer version of Firefox and your McAfee program confirms just so you know it's been updated and is different from the way it was before.

    You are right to be wary of security prompts.

    The best way to check the application is the following.

    Open my computer and locate the file c:\Program Files\Mozilla Firefox\Firefox.exe

    Right-click on the Firefox.exe file, then select "Properties".

    You will see a tab named 'Digital Signatures '.

    Select this tab and ensure its says "Mozilla Corporation" and it has a timestamp of 3 September 2011.

    Assuming that - that's life and you can allow it without risk.

    It will be useful.

  • Portege M200: registering does not voice when you use the handwriting recognition

    When I'm in "tablet mode" using handwriting text recognition that my Portege M200 regularly presents a message to say, he could not save the speech recognition and I have to switch off the microphone if I do not use it. I often use it to take notes of the meeting so there is always background noise. Usually, text is lost when this message appears. The message will also appear when I save.

    How to turn off the microphone while maintaining the functional handwriting recognition please?

    Just a question: what software do you use for text recognition?

  • What aniti spyware software can I use with widows and if I have norton security can I have microsoft with norton

    I have norton security anti vrous how I with norton can I have all the microsoftware as well as norton and how can I have all security reasons malware virouses ext.

    It is not recommended to install other antimalware programs if you use a Norton product.

    http://Service1.Symantec.com/support/NAV.nsf/docid/2000031316555206

    http://www.bleepingcomputer.com/forums/topic186533.html

    http://www.BitDefender.com/security/Don-t-use-two-antivirus-programs-at-once.html

    Kind regards...

  • What is the best software to improve performance and free hard disk cleanup. I used MacKeeper, but I'm tired of paying annual fees for this service.

    What is the best software to improve performance and free hard drive cleanup? I used MacKeeper, but I'm tired of paying annual fees for this service.

    You shouldn't have these software.  See discussion of Klaus1

    Do not install MacKeeper

    See also this one by Klaus1

    Viruses, Trojans, Malware - and other aspects of Internet Security

  • What is the last recommendation on the use of Aperture with El Capitan system software?

    What is the last recommendation on the use of Aperture with El Capitan system software? I'm sure to BONE 10.11.x since I was a big user of Aperture?

    TIA,

    If you need a feature that has opening but Photos doesn't work, click here and follow the instructions.

    (141652)

  • My Mac is slow and might need a clean upwards. What software do you recommend?

    My MacBook Pro has a version of Mac OS X 10.7.5 (old man) but recently started running slowly.

    In my view, it might needs a clean upwards. What software do you recommend?

    There is not I would recommend or use applications 'clearing '.

    What do you mean by slow? Rotation beach balls?

    When slowing down

    Run and view the results here so that we know more about your configuration.

    EtreCheck

  • When you use Firefox, a site jumped upward and said it is Firefox search virus. He said then I got dangerous viruses and need to download a security program. It's for real? The site is update32.escmce.ce.ms

    When you use Firefox, a site jumped upward and said it is Firefox search virus. He said then I got dangerous viruses and need to download a security program. It's for real? The site has been update32.escmce.ce.ms I googled this site and it does not exist. Now, I'm worried about security on my computer.

    Sounds very similar to what I had come last week. I did not now what the site was, but I noticed that the box seems to be analysis what were the Windows system files, it could not have been real. I do not download anything either, and I think that if you have not then you are probably safe. I am far from being an expert in the field and am sure that someone with more expertise will also. I learned that the best thing to do is vacuum history of cache, cookies and remove and close the browser. Don't try not even close the box that I have read. I don't know if I did or not. I think that there is some nasty things circulating right now try to deceive us in their installation on our Macs. I agree that it's a very scary experience. I was shaking when it first happened to me.

Maybe you are looking for