Contrast Security, founded by OWASP co-creator Jeff Williams, instruments applications with in-app sensors: Contrast Assess (IAST) and Scan (SAST) find vulnerabilities, Contrast SCA flags risky dependencies, and its ADR/RASP layer detects and blocks attacks in production.

Explore IT tools
Filter by deployment, source model and use case.
Refine results
7 results
Detectify combines automated DAST scanning with crowdsourced vulnerability research to monitor internet-facing assets and web apps for exploitable issues.
ImmuniWeb offers AI-assisted penetration testing, continuous application testing, attack surface discovery and dark web monitoring, plus free Community Edition tools.
Mend.io (formerly WhiteSource) pioneered software composition analysis and now covers SCA, SAST, container scanning, dependency updates (Mend Renovate), and AI security — red-teaming and runtime guardrails for LLM-based applications.
Rapid7 helps security teams find vulnerabilities, assess exposure and investigate threats across its distinct products.
Snyk scans open-source dependencies, code, containers and infrastructure-as-code for vulnerabilities, built into IDEs, CLI and CI/CD pipelines.
Veracode supplies application security testing for proprietary code and open-source components.