Fortify Software
Company type | Private |
---|---|
Industry | Computer software |
Founded | 2003 |
Headquarters | , |
Key people | John M. Jack (CEO) |
Website | fortify.com |
Fortify Software is a San Mateo, California-based software vendor. The company was founded in 2003 and provides products that identify and remove security vulnerabilities from software applications.[1][2] Its initial funding was provided by Kleiner, Perkins, Caufield & Byers.
Security Research
Fortify runs a security research group which maintains the Java Open Review project [1] and the Vulncat taxonomy of security vulnerabilities [2]. The group is also responsible for published research, including JavaScript Hijacking[3], Attacking the build: Cross build injection[4], Watch what you write: Preventing Cross-site scripting by observing program output[5] and Dynamic taint propagation: Finding vulnerabilities without attacking[6].
Products
Fortify's products focus on vulnerability detection and remediation, secure development and auditing, and security reporting and metrics.
See Also
List of tools for static code analysis
References
External links
- Company website
- Java Open Review Project
- Software Isn't Complete Unless It's Secure, BusinessWeek, September 26, 2006 - Article by Fortify Software Advisor Bill Joy
- [7]
- [8]