Business Wire

Veracode Delivers End-to-End Risk Coverage with New Tools: AI-Powered Dynamic Analysis Security Testing with External Attack Surface Management

Share

Veracode, a global leader in application risk management, today announced new capabilities to help organizations address emerging threats, giving security professionals better visibility and control in one place. The launch includes new AI-powered functionality in the Dynamic Application Security Testing (DAST)product and an External Attack Surface Management (EASM) capability. Together, they enable security teams to discover their entire attack surface and prioritize the most critical risk to streamline and simplify security scanning.

“Security teams need to see and secure everything; not only what is inside their perimeter,” said Derek Maki, Head of Product at Veracode. “With our latest DAST capabilities and Application Risk Management platform enhancements, we’re helping organizations shift from vulnerability scanning to holistic risk management, to better identify risk residing in unidentified external assets.”

Tackling Risk Across a Growing Attack Surface

Modern development cycles and cloud adoption mean organizations are grappling with a rapidly expanding attack surface. According to the 2024 Verizon Data Breach Investigations Report, web applications remain a primary target for cyberattacks, accounting for nearly half of all incidents. Moreover, Veracode’s latest software security research found an alarming increase in the average fix time for flaws once discovered, with organizations taking three months—or 47 percent— longer than five years ago.

Veracode’s latest innovations address these critical challenges head on by offering frictionless integration for comprehensive risk management, faster remediation, and intuitive scans with real-time results. Organizations can more effectively balance the speed of modern development with software security.

Automated Discovery, Risk-based Prioritization, and Real-time Reporting

Veracode EASM capabilities automate external attack surface discovery by identifying and continuously monitoring potential entry points for bad actors. The product automatically tracks internet-exposed systems and services, including APIs, web apps, mobile applications, and cloud-based assets—many of which are often unknown or unmanaged. With automated discovery, EASM uncovers blind spots and delivers:

  • Complete Visibility: Consistent identification and monitoring of all external assets to reduce visibility gaps.
  • Risk-Based Prioritization: Streamlined focus on the most critical threats to minimize points of entry for an attacker.
  • Seamless Security Integration: With a connector to Veracode Risk Manager (VRM) planned for later this year, static (SAST), software composition (SCA), and dynamic analysis findings are prioritized and contextualised in one place, giving a holistic view of risk and control.

Maki said, “In today’s threat landscape, organizations must contend with an unprecedented number of potential entry points,” Maki explained. “Veracode EASM provides security teams with the attacker’s perspective and delivers the capability to continuously identify, analyze, and mitigate risks before exploitation can occur.”

Veracode’s new Enterprise Mode for DAST Essentials is a significant advancement in dynamic application security testing. Leveraging the capability, security teams can more easily prioritize and remediate critical vulnerabilities in web applications and APIs.

With features designed to accommodate large-scale, complex application portfolios, key capabilities include:

  • Advanced crawling and auditing for deep, highly customizable, and accurate scanning
  • AI-Assisted auto-login to reduce authentication failures and easily implement the DAST program across the organization
  • Internal Scan Management (ISM) for scanning behind corporate firewalls
  • A Streamlined, intuitive interface for faster, simpler setup and configuration
  • Real-time flaw reporting and a panoramic view of risk across projects

"DAST Enterprise Mode empowers security teams to work faster, smarter, and safer,” noted Maki. “With real-time analysis in a unified platform, it eliminates the challenge of fragmented tools and enables mature, resilient risk management with centralized visibility and control.”

Experience the Tools Live at RSAC 2025

Veracode will showcase its latest capabilities at RSAC Conference in San Francisco (April 28 - May 1, 2025). Visit booth #1243 for interactive demos and expert discussions on how to stay ahead of emerging threats and improve security posture.

Learn more about Veracode’s products on the website.

About Veracode

Veracode is a global leader in Application Risk Management for the AI era. Powered by trillions of lines of code scans and a proprietary AI-assisted remediation engine, the Veracode platform offers adaptive software security and is trusted by organizations worldwide to build and maintain secure software from code creation to cloud deployment. Thousands of the world’s leading development and security teams use Veracode every second of every day to get accurate, actionable visibility of exploitable risk, achieve real-time vulnerability remediation, and reduce their security debt at scale. Veracode is a multi-award-winning company offering capabilities to secure the entire software development life cycle, including Veracode Fix, Static Analysis, Dynamic Analysis, Software Composition Analysis, Container Security, Application Security Posture Management, Malicious Package Detection, and Penetration Testing.

Learn more at www.veracode.com, on the Veracode blog, and on LinkedIn and X.

Copyright © 2025 Veracode, Inc. All rights reserved. Veracode is a registered trademark of Veracode, Inc. in the United States and may be registered in certain other jurisdictions. All other product names, brands or logos belong to their respective holders. All other trademarks cited herein are property of their respective owners.

View source version on businesswire.com: https://www.businesswire.com/news/home/20250423385599/en/

Contacts

For more information:
Katy Gwilliam
kgwilliam@veracode.com

About Business Wire

For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.

www.businesswire.com

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

IFF Reports First Quarter 2025 Results6.5.2025 23:35:00 EEST | Press release

IFF (NYSE: IFF) reported financial results for the first quarter ended March 31, 2025. Management Commentary “IFF delivered solid first quarter results, driven by disciplined execution and broad-based growth across most of our business,” said IFF CEO Erik Fyrwald. “Our growth, combined with ongoing productivity initiatives, contributed to a meaningful increase in profitability. We also successfully completed the divestiture of our Pharma Solutions business two months ahead of schedule, a key milestone that supports the achievement of our targeted debt leverage ratio." “As we navigate the heightened macroeconomic uncertainty in today’s environment, we remain focused on what we can control - collaborating with our customers to drive growth, investing in innovation and delivering increased productivity. We are maintaining our full-year financial guidance ranges but recognize that the uncertain environment has potential for more challenges, yet we remain confident in our long-term strategy

Lattice to Showcase Advanced Edge AI Solutions at New-Tech 2025 Exhibition6.5.2025 23:00:00 EEST | Press release

Lattice Semiconductor (NASDAQ: LSCC), the low power programmable leader, today announced that it will showcase its latest FPGA technology at the New-Tech 2025 Exhibition. Lattice technology demos will be featured in the Telsys Ltd. booth, showcasing industry-leading low power, small form factor FPGAs and application-specific solutions enabling advanced embedded vision, artificial intelligence, and sensor fusion capabilities. Additionally, Lattice will deliver a technical presentation titled “Power-Efficient Robotics and Automation Fueled by Lattice FPGA Technology” about how advanced, power-optimized FPGAs can dramatically reduce power consumption for next-generation automation and robotics solutions for Industrial applications. Who: Lattice Semiconductor What / When: May 20 – 21: Lattice demo showcase (Telsys Ltd. Booth #67-68) May 21, 10:20 a.m.: “Power-Efficient Robotics and Automation Fueled by Lattice Semiconductor FPGA Technology” technical presentation Where: New-Tech 2025 Exhib

Rockstar Games Releases Trailer 2 for Grand Theft Auto VI6.5.2025 19:37:00 EEST | Press release

Rockstar Games®, a publishing label of Take-Two Interactive Software, Inc. (NASDAQ: TTWO), is proud to announce the release of Trailer 2 for Grand Theft Auto VI, alongside a closer look at the biggest, most immersive evolution of the series yet: This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20250506495901/en/ Set to launch on May 26, 2026, on PlayStation® 5 computer entertainment systems and Xbox Series X|S games and entertainment systems, Grand Theft Auto VI will soon be available for wishlisting on both the PlayStation and Microsoft Stores. Vice City, USA. Jason and Lucia have always known the deck is stacked against them. But when an easy score goes wrong, they find themselves on the darkest side of the sunniest place in America, in the middle of a criminal conspiracy stretching across the state of Leonida — forced to rely on each other more than ever if they want to make it out alive. Further details can be found at www.r

Monroe Capital, SMBC and MA Financial Launch US$1.7 Billion Middle Market Lending Joint Venture6.5.2025 17:07:00 EEST | Press release

Monroe Capital, Sumitomo Mitsui Banking Corporation (SMBC) and MA Asset Management (part of MA Financial Group, ASX: MAF) today announced the formation of a new joint venture (“JV”), which will invest up to US$1.7 billion in senior secured loans to U.S. middle market borrowers. The JV harnesses the complementary capabilities of the three partnering institutions to establish a differentiated platform focused on the attractive middle market subset of private credit. The JV expects to benefit from broad access to high-quality, proprietary deal flow of first-lien senior-secured loans to established middle market companies, leveraging the loan origination capabilities of Monroe Capital’s direct lending infrastructure, SMBC’s established private credit and sponsor finance platform and MA Financial’s expertise in specialty credit and co-lending. The JV’s investable capital will be provided by Monroe Capital, SMBC and MA Financial (via its managed funds). Monroe Capital is one of the largest l

Andersen Consulting Expands Platform in Asia Pacific with Addition of Sertis6.5.2025 16:30:00 EEST | Press release

Andersen Consulting adds coverage in Thailand and Indonesia with its newest member, Sertis, a leading consultancy delivering data-driven, enterprise AI solutions to clients through Southeast Asia and beyond. This strategic move bolsters Andersen Consulting’s presence in the region and strengthens the organization's capabilities in the AI space. Founded in 2014 by Tee Vachiramon, Sertis specializes in AI and technology transformation consulting services, including AI strategy development, custom AI solutions, data analytics, and digital transformation. The firm works with clients in various sectors, such as finance, retail, energy, healthcare, and manufacturing, enabling them to optimize operations, improve decision-making, and enhance customer experience. “Becoming a member of Andersen Consulting is a milestone for our firm as it allows us to tap into an unparalleled platform of best-in-class solutions for our clients,” Tee said. “With the support of Andersen, we are now positioned to

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye