SAST
Static Application Security Testing
Static Application Security Testing analyzes source code, bytecode, or binaries for security vulnerabilities without executing the application. SAST tools scan for patterns matching known vulnerability types like SQL injection, buffer overflows, and hardcoded credentials.
Como é usado em cibersegurança
Security engineers integrate SAST into CI pipelines to catch vulnerabilities before code reaches production. Penetration testers review SAST findings to identify areas worth deeper manual testing. Security architects evaluate and standardize SAST tools across engineering teams to maintain consistent code quality.
Termo relacionado no glossário: sast
As definições são explicações originais escritas para fins de desenvolvimento profissional. Para definições técnicas autoritativas, consulte NIST, ISO ou o órgão de normalização correspondente.