Download PDF version Contact company

Checkmarx, a provider of application security testing, announced open beta support of the Scala programming language. The new capability adds the ability to analyse and remediate security risks and vulnerabilities exposed in projects written using Scala code.

Identifying potential vulnerabilities

Checkmarx is the first static analysis solution to support Scala. The added capability not only allows the detection of vulnerabilities within Scala code, but also the ability to identify security and compliance issues in the flows between Scala and Java, and vice versa—enabling applications built using both Java and Scala to be fully analysed using a single Checkmarx scan. With Checkmarx, users can identify a wide range of potential vulnerabilities in Scala code such as code injections, connection string injections, reflected XSS, SQL injections, stored XSS and many more.

"Scala is increasingly becoming the preferred language of choice for many development organisations"

The growing success of the Scala programming language has incentivised organisations globally to shift away from using Java, with Scala predicted to become a preferred choice by developers. Due to the rise in popularity, there is an urgent need to address the risks that may be exposed if coding is not done in a secure manner. Without a way to analyse Scala code statically the industry will soon find itself combating breaches exposed by bad Scala coding techniques.

Integrating source code analysis

“We are seeing a growing market need for Scala, especially from our enterprise customers,” says Nir Livni, Vice President of Products. “Scala is increasingly becoming the preferred language of choice for many development organisations. In order to deliver secure Scala applications, developers are looking for a solution that guides them where and how to fix vulnerabilities in their Scala source code.”

Checkmarx CxSAST addresses more than 20 different programming languages, and Scala is its latest addition. By empowering organisations to seamlessly integrate the source code analysis of Scala within the software development life cycle, organisations can now securely shift from Java to Scala while keeping the highest rate of code security standards and ensuring a secure software development life cycle.

Download PDF version Download PDF version

In case you missed it

Anviz Global expands palm vein tech for security
Anviz Global expands palm vein tech for security

The pattern of veins in the hand contains unique information that can be used for identity. Blood flowing through veins in the human body can absorb light waves of specific wavelen...

Bosch sells security unit to Triton for growth
Bosch sells security unit to Triton for growth

Bosch is selling its Building Technologies division’s product business for security and communications technology to the European investment firm Triton. The transaction enc...

In age of misinformation, SWEAR embeds proof of authenticity into video data
In age of misinformation, SWEAR embeds proof of authenticity into video data

The information age is changing. Today, we are at the center of addressing one of the most critical issues in the digital age: the misinformation age. While most awareness of thi...

Quick poll
What is the most significant challenge facing smart building security today?