Press release
Parasoft Releases Support for Brand New 2019 CWE Guidelines
MONROVIA (USA)/Berlin, November 19, 2019 - Parasoft, the global leader in automated software testing, today announced complete support for the newly updated 2019 Common Weakness Enumeration (CWE) Top 25 and "On the Cusp" (an additional 15 weaknesses) for C, C++, Java, and .NET languages. With the latest releases of their software testing products Parasoft Jtest, Parasoft dotTEST, and Parasoft C/C++test, Parasoft is the only vendor to cover all of these critical security guidelines, enabling organizations to achieve continuous security and compliance to prevent the most dangerous of software errors.Learn more about Parasoft’s support for the CWE Top 25 and "On the Cusp" rules here.
The CWE is a comprehensive list of over 800 programming errors, design errors, and architectural errors that can lead to exploitable vulnerabilities. Previously updated in 2011, the 2019 CWE Top 25 Most Dangerous Software Errors is a targeted list of the most widespread and critical errors that can be exploited to create the most serious security consequences in software. Since its release, the Top 25 list has been a widely adopted security standard throughout a variety of industries, along with the CWE’s somewhat lesser-known "On the Cusp" list. For organizations that are serious about cybersecurity, these additional 15 items are the next step in AppSec, after getting the Top 25 under control. For teams working with IoT or medical devices, both the Top 25 and "On the Cusp" are also an integral part of UL 2900 (Software Cybersecurity for Network-Connectable Products) compliance, recognized by the FDA for network-connected medical device cybersecurity.
Parasoft provides full support for CWE, with its latest releases supporting the new generation of the 2019 CWE Top 25. Parasoft’s CWE Compliance Packs for C/C++, Java, and .NET provide pre-configured, out-of-the-box, and fully customizable test configurations and reporting for the CWE Top 25 and CWE CUSP security standards. Parasoft’s solution is certified CWE-Compatible, so users can easily understand which static analysis checker is associated with which CWE item during configuration, remediation, and reporting. With Parasoft’s unique CWE-centric model, all the checkers are named based on the associated CWE ID, removing the need for time-consuming mapping when configuring, reporting, and remediating issues. Parasoft’s unique real-time feedback gives users a continuous view of compliance with the CWE, by providing interactive compliance dashboards, widgets, and reports that have the CWE risk technical impact implemented right within the dashboard itself.
Having traditionally been constructed through aggregating survey responses from a wide selection of organizations on weaknesses considered to be the most prevalent or important, CWE’s recently-announced new generation of the Top 25 and "On the Cusp" lists have used a more objective data-driven process that leverages information Common Vulnerability Enumeration (CVE), NIST, and from the National Vulnerability Database (NVD). This information takes into account the Common Vulnerability Scoring System (CVSS) score of each vulnerability or CVE, including information about how prevalent a particular vulnerability is, how difficult it might be for an attacker to exploit it, and the impact of the damage they could cause by exploiting it.
"The additional information provided in the 2019 update will help organizations objectively understand which items are likely to cause the most harm, making the 2019 CWE Top 25 and 'On the Cusp' more effective for cybersecurity," explained Arthur Hicken, security expert at Parasoft. "Using a SAST tool that covers the entirety of these two lists will help ensure that your software is as secure as possible. Parasoft’s complete CWE support and powerful reporting and analytics system helps our customers not only catch security vulnerabilities before they release, but address core root-cause security problems to harden the code."
Parasoft’s C/C++, Java, and .NET unified testing solutions provide the broadest support for the CWE Top 25 and "On the Cusp" security standards. Parasoft’s unique CWE-centric model provides users with the ability to connect static analysis findings to CWEs without any tedious mapping, or extra effort that is required from other tools.
Parasoft Corp. Headquarters, 101 E. Huntington Drive, Monrovia, CA 91016, USA
www.parasoft.com, info@parasoft.com
Press Contacts:
Parasoft Corp., Erika Barron, Tel. +1-626-275-2434; erika@parasoft.com
Agentur Lorenzoni GmbH, Public Relations, Landshuter Str. 29, 85435 Erding; www.lorenzoni.de,
Beate Lorenzoni, Tel: +49 8122 55917-22; beate@lorenzoni.de
About Parasoft:
Parasoft provides innovative tools that automate time-consuming testing tasks and provide management with intelligent analytics necessary to focus on what matters. Parasoft technologies reduce time, effort, and cost of delivering secure, reliable, and compliant software, by integrating static and runtime analysis; unit, functional and API testing; and service virtualization. Parasoft supports software organizations as they develop and deploy applications in the embedded, enterprise and IoT markets. With developer testing tools, manager reporting/analytics and executive dashboarding, Parasoft enables organizations to succeed in today’s most strategic development initiatives – agile, continuous testing, DevOps, and security.
This release was published on openPR.
Permanent link to this press release:
Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.
You can edit or delete your press release Parasoft Releases Support for Brand New 2019 CWE Guidelines here
News-ID: 1874782 • Views: …
More Releases from Parasoft Corp.

Parasoft Introduces to Market a Radical New Approach to Test Data Management
Monrovia (USA), Berlin – 8 May 2019 - Parasoft, the global leader in automated software testing and continuous quality, today announced the latest releases of Parasoft SOAtest and Parasoft Virtualize, with a new web interface for managing and generating test data. The new approach is simple to use and understand, makes it easy for users to get the data they need for testing, and helps businesses eliminate the cost of…

Parasoft Streamlines AUTOSAR Compliance and Reporting
Monrovia (USA) - February 26, 2019 – Parasoft, the global leader in automated software testing, today announced the latest release of Parasoft C/C++test, their unified C and C++ development testing solution for embedded applications. The Parasoft C/C++test 10.4.2 release continues the product’s recent focus on reducing the manual burden of coding standards compliance and providing the most complete solution for testing C and modern C++ code. With this release, Parasoft…

Parasoft Streamlines AUTOSAR Compliance and Reporting
Parasoft, the global leader in automated software testing, today announced the latest release of Parasoft C/C++test, their unified C and C++ development testing solution for embedded applications. The Parasoft C/C++test 10.4.2 release continues the product’s recent focus on reducing the manual burden of coding standards compliance and providing the most complete solution for testing C and modern C++ code. With this release, Parasoft C/C++test introduces the industry’s most comprehensive testing…
More Releases for CWE
Preclinical Respiration and Inhalation Lab Equipment Market to Expand Significan …
The "Global Preclinical Respiration and Inhalation Lab Equipment" intelligence report, just published by USD Analytics, covers insurers' micro-level study of important market niches, product offers, and sales channels. To determine market size, potential, growth trends, and competitive environment, the Global Preclinical Respiration and Inhalation Lab Equipment provides dynamic views. Both primary and secondary sources of data were used to generate the research, which has both qualitative and quantitative depth. Several…
Chip-On-Flex Market turning Impressive - Players in Action Stemko, Chipbond Tech …
The Latest Released Chip-On-Flex market study has evaluated the future growth potential of Chip-On-Flex market and provides information and useful stats on market structure and size. The report is intended to provide market intelligence and strategic insights to help decision-makers take sound investment decisions and identify potential gaps and growth opportunities. Additionally, the report also identifies and analyses changing dynamics, and emerging trends along with essential drivers, challenges, opportunities, and…
Chip On Flex (COF) Market Size,Demand and Technology Acquisitions 2021 - 2027: L …
Market Insights Reports released a new study on 2021-2027 Chip On Flex (COF) Market with 100+ data Tables, Pie Chat, Graphs & Figures spread through Pages and easy to understand detailed analysis.
The Global Chip On Flex (COF) Market Report provides an in-depth assessment of the given sector’s current position and central factors. The study considers the present scenario of the Chip On Flex (COF) market and its market dynamics for the period 2021-2027. It…
Chip on Flex (COF) Market Key Players : AKM Industrial, Chipbond Technology, Com …
Chip-on-Flex, or COF, refers to the semiconductor wherein the microchip is specifically mounted on and electrically associated with a flexible circuit (a circuit-based on an adaptable substrate rather than the typical printed circuit board).
The chip on flex market is divided into type, application, verticals, and geography. The type is further divided into single sided chip on flex and others. The application is segmented into static and dynamic. The verticals are…
Chip On Flex Market 2017-2021 Global Leaders: CWE, Stemko Group, Flexceed, Compu …
Market Research Future published a research report on “Global Chip On Flex Market Research Report- Forecast to 2021” – Market Analysis, Scope, Stake, Progress, Trends and Forecast to 2021.
Market Highlights
Chip On Flex Market is expected to grow at CAGR of ~4.43% during the forecast period and expected to reach market size of US ~$1795 Million by the end of forecast period. Chip On Flex is also known as direct chip…
Meg Cadoux Hirshberg to Keynote at CWE Women Business Leaders Conference 2013
Inc. Columnist and Wife of Stonyfield Farm Co-Founder Shares Keys to Surviving Entrepreneurship
Boston, MA, September 5, 2013 – The Center for Women & Enterprise (CWE), a nationally-known nonprofit organization dedicated to empowering women in business, today announced Meg Cadoux Hirshberg, Inc. columnist, author, and wife of co-founder of Stonyfield Yogurt, will speak on October 3rd at The CWE Women Business Leaders Conference 2013, taking place at the Dedham Hilton in…