Dynamic Application Security Testing Tools

Dynamic Application Security Testing (DAST) tools for dynamic application security testing that identify vulnerabilities in running web applications and APIs through automated scanning.

Browse 96 dynamic application security testing tools

Managed application security testing service for web applications

DAST platform with human validation for web app & API security testing

GAUNTLT - Security and Rugged Testing tool

An open-source web application security scanner framework that identifies vulnerabilities in web applications.

DAST tool that tests running apps for runtime vulnerabilities via attack simulation.

CI/CD-integrated DAST tool for automated web app and API vuln scanning.

DHS-funded program providing automated AppSec tools across the SDLC.

DAST scanner for discovering and testing APIs and web apps for vulns.

DAST platform for scanning web apps & APIs within CI/CD pipelines.

Web app security platform for vulnerability scanning & secure dev.

DAST scanner for web apps & APIs with CI/CD integration & 15k+ test cases.

Dynamic web app & API vulnerability scanner with free and paid tiers.

Custom blockchain fuzz testing service with bespoke harnesses & CI integration.

Automated DAST tool for continuous web app and API vulnerability scanning.

Continuous automated pentesting platform with GitHub integration and AI agents

AI-driven automated security testing using fuzzing and symbolic execution

AI-powered fuzzing and security testing tool for Python applications

AI-powered platform for continuous automated penetration testing of web apps

DAST solution for mobile and web app security testing and vulnerability scanning

Web vulnerability scanner for web app and mobile API security audits

Web application vulnerability scanner for automated security testing

DAST scanner for web apps & APIs with automated vuln detection & remediation

Full-stack web app security testing platform with SAST, DAST, SCA, and pentesting

Runtime application security testing platform for CI/CD pipelines

Dynamic Application Security Testing Tools FAQ

Common questions about Dynamic Application Security Testing tools, selection guides, pricing, and comparisons.

Use SAST during development to catch coding flaws early (SQL injection, XSS patterns in code). Use DAST to test running applications for runtime vulnerabilities that SAST cannot detect: authentication issues, session management flaws, server misconfigurations, and business logic vulnerabilities. A mature AppSec program uses both, with SAST in CI/CD and DAST in staging/pre-production.

Have more questions? Browse our categories or search for specific tools.