1. https://appdevelopermagazine.com/enterprise
  2. https://appdevelopermagazine.com/-checkmarx-releases-new-cxrasp-platform-offering-runtime-application-self-protection/
2/6/2015 7:00:50 AM
Checkmarx Releases New CxRASP Platform Offering Runtime Application Self Protection
/Mobile-Protection-App-Developer-Magazine_52u81v4c.jpg
App Developer Magazine
 Checkmarx Releases New CxRASP Platform Offering Runtime Application Self Protection

Enterprise

Checkmarx Releases New CxRASP Platform Offering Runtime Application Self Protection


Friday, February 6, 2015

Stuart Parkerson Stuart Parkerson


Checkmarx has announced the launch of its Runtime Application Self-Protection (RASP) solution, CxRASP, which utilizes two-point instrumentation technology to continuously observe an app’s bidirectional data flow, enabling the detection and defense against real-time attacks.

CxRASP is the latest addition to the Checkmarx Application Security Hub which provides solutions for application security throughout the software development lifecycle as well as while in production.

As the company, “Existing Web Application Firewalls (WAFs) act as external devices monitoring the input without a clear understanding of the logic behind the app’s data flows and behavior. Implementing a solution that fails to properly distinguish between legitimate input and attacks on apps such as SQL Injection and Cross-Site Scripting can lead to false-positive diagnoses that hinders the overall effectiveness of the solution and could harm the organization’s business activity. As a result, analysts estimate that 90% of all WAFs operate in alert mode and are not actually used for blocking attacks.”

The Checkmarx technology “listens” at each interaction junction of the app, covering access points between the application and the user, the database, the network, and the file system, respectively. With visibility into the app’s input and output, CxRASP tailors the protection mechanism to the specific flow within the application to achieve detection accuracy in real-time. The product flags suspicious activity when it enters the app, and then verifies if it is actually malicious at the output to minimize false positives and false negatives. When an attack is identified, the organization is alerted and instructions are sent on how to fix the vulnerability. 

CxRASP is available as a stand-alone platform. Alternatively, the product can be integrated with Checkmarx’s Static Application Security Testing (SAST) CxSuite Solution as well as other SAST vendors, offering application protection both during and following the development process. Because it does not rely on network traffic, CxRASP eliminates SSL issues, new protocol parsing, strong decoding, and signature-based threats and obliterates complex regexes.

More information is available on the Checkmarx website.


Read more: https://www.checkmarx.com/




Subscribe to App Developer Magazine

Become a subscriber of App Developer Magazine for just $5.99 a month and take advantage of all these perks.

MEMBERS GET ACCESS TO

  • - Exclusive content from leaders in the industry
  • - Q&A articles from industry leaders
  • - Tips and tricks from the most successful developers weekly
  • - Monthly issues, including all 90+ back-issues since 2012
  • - Event discounts and early-bird signups
  • - Gain insight from top achievers in the app store
  • - Learn what tools to use, what SDK's to use, and more

    Subscribe here



Featured Stories


Spotify and UMG strike landmark AI music licensing deal
Spotify and UMG strike landmark AI music licensing deal Thursday, May 28, 2026




Anthropic investigation opened after Mythos accessed by Discord group
Anthropic investigation opened after Mythos accessed by Discord group Wednesday, May 27, 2026


AI layoffS: What is really behind it all
AI layoffS: What is really behind it all Tuesday, May 26, 2026


The identity system is failing under AI
The identity system is failing under AI Monday, May 25, 2026


The Real World Launches Expert-Verified AI Certification Framework
The Real World Launches Expert-Verified AI Certification Framework Friday, May 22, 2026


Multiple language options when developing apps with Evoke
Multiple language options when developing apps with Evoke Thursday, May 21, 2026


When Social Listening Becomes Social Surveillance
When Social Listening Becomes Social Surveillance Wednesday, May 20, 2026


Medical debt relief custom-built platform moopFi launches
Medical debt relief custom-built platform moopFi launches Tuesday, May 19, 2026


Quant Pros Say AI Is Widening the Skills Gap
Quant Pros Say AI Is Widening the Skills Gap Monday, May 18, 2026


Tether QVAC SDK Powers AI Across Devices and Platforms
Tether QVAC SDK Powers AI Across Devices and Platforms Wednesday, April 22, 2026


Stay Updated

Sign up for our newsletter for the headlines delivered to you

SuccessFull SignUp

Get More App News



/sites/themes/prod/assets/js/less.js"> ' ' %>