1 Install
1.1
Download
You can download from https://www.fortify.com/ or other places.
Note: this is commercial software, need license
1.2 Install
Run exe to install next and next by steps,
then ok,you can see bellow, run Audit Workbench
2 Configuration
2.1 Get rules
There is no rulepacks after you install,
need to get rules, do like this:
Menu:Options->Options->Server
Configuration,set the Rulepack Update Configuration:Proxy Server.
Then click Rulepack Management, Click Update
Rulepacks to get rules, and then ok.
3 Scan Project
3.1
Step 1
You can do a quickly scan by click Scan Java
Project, I preferre to use the Advance scan, as you can choose what you need
for youself.
3.2
Step 2
Click the Advance scan, choose the project source code at popup windows,then click ok.
3.3
Step 3
Add the jars which project depends to scan
code. Then click Ok.
3.4
Step 4
Choose the jdk version adjust to project. Then
click Next> button.
3.5 Step 5
Click Configure Rulepacks … button, select
rules and click ok. Then click Next> button.
3.6 Step 6
Set these values for scan, then click Run
scan button, and wait hours…
4 Get Rusult
After the scan finish, see like this:
Get the report by click Reports button
Note: Whatever the issues at scan result need the developers to do a Verify whether they are really a issues.
5 Resources
https://www.fortify.com/
分享到:
相关推荐
MicrosoftProgram_Install_and_Uninstall.metaMicrosoftProgram_Install_and_Uninstall.metaMicrosoftProgram_Install_and_Uninstall.metaMicrosoftProgram_Install_and_Uninstall.metaMicrosoftProgram_Install_and...
babylon install and key
install and decommission.one
"解决 Install ncurses(ncurses-devel) and try again 问题的方法" 在 Linux 系统中,ncurses 库是一种基本的字符终端控制库,主要用于控制终端的显示输出。虽然现在很多新的程序已经不再使用 ncurses 库,但是对于...
GlowRoot Install and Use Guaid , JVM monitor,Http track,API Request Tracke,Sql Query time。
Vmamba selective_scan 在Linux下环境安装包 cuda 11.8 ,直接pip install 即可 ,此版本包含selective_scan_cuda_core
datastage v8.1 install and config guide
Fix problems that block programs from being installed or removed。 Microsoft官方一个用于修复windows安装或者删除过程中,提示缓存数据找不到的修复工具
- Agisoft PhotoScan supports GPU acceleration for image matching and dense cloud generation steps, so high-end OpenCL or CUDA-compatible graphics card can speed up the processing. Home Page - ...
Vmamba selective_scan 在Linux下环境安装包 cuda 12.1 ,直接pip install 即可 ,此版本包含selective_scan_cuda_core
mingw
linux操作系统下,检测网络中的冲突的ip地址对应的mac地址,本工具为源码包,安装方法...tar -xzvf arp-scan-1.9.tar.gz cd arp-scan-1.9 ./autoreconf --install ./configure make && make check && make install
SAP R3 system management and install
虽然我是在一个已有的系统中安装sl到mbr分区上(这样只需修改OSInstall.mpkg一个文件),论坛上好多人问起如果要写到硬盘或光盘上(这样就需要修改两个文件osinstall.mpkg和OSInstall两个文件),但OSInstall文件...
Vmamba selective_scan 在Windows下环境安装包,直接pip install 即可
【install4j】是一款强大的Java应用程序打包工具,它允许开发者将Java应用打包成跨平台的可执行文件,如Windows上的.exe、Linux上的.bin等。这个工具不仅简化了部署过程,还提供了自定义安装向导、许可协议、启动...
模拟点击360安全卫士+启动提示,并安装自启动Install
flashcenter_pp_ax_install_cn.exe
微软已经推出了替代方案,如“Programs and Features”中的“Turn Windows features on or off”,以及“DISM”(Deployment Image Servicing and Management)工具,这些工具同样能够帮助用户管理和维护系统组件。...
工具版本:InstallAnywhere 2009 Enterprise build 3657 使用方法: 把IAClasses.zip覆盖安装目录下的IAClasses.zip. 默认安装目录为C:\Program Files\InstallAnywhere 2009 Enterprise,则覆盖该目录下的...