OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
tools for analyzing java code

From: Mads Rasmussen (madsopencs.com.br)
Date: Thu May 05 2005 - 08:17:46 CDT


Anyone knows any tools to analyze security problems with java code?

I have come across some, like

Lint4j
http://www.jutils.com/index.html

CodePro Analytix
http://www.instantiations.com/codepro/download.asp

Jtest
http://www.parasoft.com/jsp/products/home.jsp?product=Jtest&itemId=14

Parasoft's Jtest that mainly does coding style analysis but appears to
have some security checks (50+).

I would like to hear from anyone who has experience with these tools or
anyone who might know better ways to analyze java code from a security
perspective.

Regards,

Mads Rasmussen
Security Consultant
Open Communications Security