Loading...
Application Security tools for Dast: the Application Security options most relevant when Dast is the priority, compared side by side so you can shortlist faster. Filter by pricing or specialization. Independent and vendor-neutral: our scores and rankings are earned, never bought — sponsored placement is always labeled.
We cover 107 cybersecurity tools
Static API security that finds exposed endpoints and risks before deployment
Source-aware AI pentest platform combining code analysis with runtime exploit validation.
AI appsec platform that traces attack paths, proves exploits, and auto-remediates.
AI-powered continuous pentesting platform that tests every pull request in CI/CD.
Local-first web security proxy for bug bounty with HTTP/2, mobile, and IDOR replay.
AI-powered AppSec platform for code, supply chain, secrets & DAST.
Centralized DevSecOps platform for orchestrating SAST, DAST & SCA scanners.
Managed application security testing service for web applications
API discovery, vulnerability scanning, and penetration testing platform
ASPM platform for tracking app security risks from development to deployment
AI-powered automated vuln scanning for apps, APIs, domains, and cloud
ARM-native virtual hardware platform for mobile & IoT security testing.
AI-driven AppSec platform that validates exploitable vulns in ~4 hours.
AI-automated fuzz testing platform for detecting software vulnerabilities.
DevSecOps adoption platform using gamified training & governance.
DAST tool that tests running apps for runtime vulnerabilities via attack simulation.
Consolidated SaaS platform replacing legacy AppSec tools with CI/CD-integrated security.
SAST platform that runs scans and ingests SARIF results into a unified dashboard.
CI/CD-integrated DAST tool for automated web app and API vuln scanning.
DHS-funded program providing automated AppSec tools across the SDLC.
AppSec tool that aggregates SAST/DAST results for triage & remediation.
DAST scanner for discovering and testing APIs and web apps for vulns.
DAST platform for scanning web apps & APIs within CI/CD pipelines.
Web app security platform for vulnerability scanning & secure dev.