
Identify vulnerabilities in deployed web applications and services
Vendor
OpenText
Company Website
Overview
Secure your software supply chain and protect the integrity of your code with OpenText™ Fortify WebInspect.
How OpenText Fortify WebInspect can benefit business
Find vulnerabilities faster and easier
Tune and optimize OpenText Fortify WebInspect to your application and find vulnerabilities faster and earlier in the SDLC.
Save time with automation
Optimize productivity and resources with features like redundant page detection, automated macro generations, incremental scanning, and containerized delivery.
Crawl modern frameworks and web technologies
Test the latest web technologies, including HTML5, JSON, AJAX, JavaScript, HTTP2, and more.
Why choose OpenText Fortify WebInspect?
Functional application security testing (FAST)
Make sure nothing gets missed with testing that uses all the functional tests IAST does—then keeps going.
Hacker-level insights
Prevent vulnerabilities by finding where updates are needed, such as client-side frameworks and the version numbers.
Client-side software composition
Client-side software composition analysis (SCA) provides CVEs of client-side libraries, health data of open source projects, and an exportable CycloneDX SBOM.
HAR files for workflow macros
WebInspect can use HAR files for workflow scanning, ensuring scans cover important content.
Testing and multi-factor authentication
WebInspect continues to scan, even in multi-factor authentication (MFA) environments.
Key features
Flexible deployment
Gets you started quickly and scales as needed, with the flexibility of off-cloud deployments, SaaS, or AppSec-as-a-service.
Compliance management
Provides pre-configured policies and reports for all major compliance regulations related to web application security, including PCI DSS, DISA STIG, NIST 800-53, ISO 27K, OWASP, and HIPAA.
Horizontal scaling
Increases speed through horizontal scaling, which uses Kubernetes to create little versions of OpenText Fortify WebInspect that focus on processing JavaScript, allowing parallel scanning that’s much faster.
API scanning
Presents a complete story of your APIs, whether they’re SOAP, Rest, Swagger, OpenAPI, Postman, GraphQL, or gRPC.
ScanCentral DAST
Offloads code analysis tasks from your build machine to remote sensors so you can efficiently manage your time and resources.
Rapid DAST scaling
Dynamically scales up or down to meet the changing demands of the CI/CD pipeline.