Application Security, Inc.
home client login partner login online store contact us
search:
Solutions Products Partners Support News & Events About Us
Download
Purchase License Now
Download Data Sheet

Key Features

Discovery and Inventory
Non-intrusive Penetration Testing and Security Audit
Easy-to-Use and Intuitive
Manage Vulnerability Data and Remediation Efforts
Distributed Architecture for the Enterprise
Complementary and Compatible Security Solution
Continuously Updated Application Security Knowledge Base

Discovery and Inventory
Unique database/application discovery and inventory methodology/tactics.

  • Accurately locates and identifies all of the databases/applications within your network.
  • Point it at a network and scan for existing databases/applications across a range of ports.

Non-intrusive Penetration Testing and Security Audit
Non-intrusive database/application attack simulations, and in-depth "agent-less" security audits.

  • Automated and non-intrusive attack simulations performed against discovered and targeted databases/applications in uncovering possible security weaknesses, vulnerabilities, and misconfigurations.
  • Penetration Tests (Pen Tests) can be performed against discovered databases/applications to evaluate how vulnerable they are from an external attack.
  • An in-depth Security Audit can be performed to examine security configurations, and various vulnerabilities from the "inside-out".

Easy-to-Use and Intuitive
Automated inventory, information gathering, and analysis features empower you with the security intelligence required to fully assess the security of your enterprise databases/applications.

  • All-in-one package provides everything you need to perform inventory assessments, penetration tests, develop security policies, audit for policy compliance/security misconfigurations, and deliver detailed/comprehensive reports on the security of your database from every possible angle.
  • Network-based application scanning solution able to remotely discover, attack, and audit databases/applications.

Manage Vulnerability Data and Remediation Efforts
Easy Management of Application Vulnerability Data and Remediation Efforts.

  • Reporting facilities to communicate application vulnerabilities and security holes throughout your entire organization.
    • Click here to view AppDetectivePro sample reports.

  • Manage large amounts of application vulnerability data through vulnerability filtering capabilities.
  • Manage enterprise-wide application vulnerability remediation efforts.
    • Delegate remediation efforts to address application vulnerabilities
    • Automatically forward vulnerability reports to the respective application administrators for immediate action
    • Know the status of all application vulnerabilities throughout your entire organization

Distributed Architecture for the Enterprise
Distributed Database Vulnerability Assessment Architecture to Accommodate Large Enterprises.

AppDetectivePro is the first database vulnerability assessment solution in the world that is designed to meet the scalability demands of large organizations with thousands of applications.

  • Distributed management and scheduling features enable an enterprise to assign and schedule vulnerability-testing tasks to remote AppDetectivePro Engines, and to pull those results back to a central site for analysis and application remediation planning.
  • Application vulnerability assessment policies can be configured according to the needs of your organization throughout the enterprise. Policies can either be all-encompassing or customized to the specific needs of a separate business unit/workgroup.
  • Application vulnerability data is centrally stored and collected from AppDetectivePro Engines distributed throughout the Enterprise.

Complementary and Compatible Security Solution
Complementary and compatible to existing security solutions.

  • Many security scanners investigate and examine vulnerabilities and misconfigurations of the host and network operating system. Other existing "database" scanners examine the security strength just from the "inside out," which requires extensive Database Administrative (DBA) privileges or rely on agents to audit for security misconfigurations and policy compliance. AppDetectivePro picks up where other scanners fall short of a vulnerability assessment solution for databases/applications by providing a lightweight application discovery tool, penetration tester, and security auditor without the use of agents or extensive DBA privileges.
  • Integrates easily with existing industry standard security solutions, and is a great addition to any security "toolkit" for Security Practitioners, Database Administrators (DBAs), Internal/External Auditors, Consultants, or General System Administrators.
  • Meets CVE (Common Vulnerabilities and Exposures) Compatibility Requirements

Continuously Updated Application Security Knowledge Base
ASAP Updates - Extensive and continuously updated knowledge base of security best practices, vulnerabilities, and misconfigurations.

  • Backed by our own research and development team (SHATTER) to integrate all of the latest database security vulnerabilities into AppDetectivePro
  • Click here for the latest security updates of AppDetectivePro