Veracode Delivers End-to-End Risk Coverage with New Tools: AI-Powered Dynamic Analysis Security Testing with External Attack Surface Management
Seamless Integration and Speed: Latest Innovations Empower Faster, Smarter, and Safer Software Security
Veracode, a global leader in application risk management, today announced new capabilities to help organizations address emerging threats, giving security professionals better visibility and control in one place. The launch includes new AI-powered functionality in the Dynamic Application Security Testing (DAST)product and an External Attack Surface Management (EASM) capability. Together, they enable security teams to discover their entire attack surface and prioritize the most critical risk to streamline and simplify security scanning.
“Security teams need to see and secure everything; not only what is inside their perimeter,” said Derek Maki, Head of Product at Veracode. “With our latest DAST capabilities and Application Risk Management platform enhancements, we’re helping organizations shift from vulnerability scanning to holistic risk management, to better identify risk residing in unidentified external assets.”
Tackling Risk Across a Growing Attack Surface
Modern development cycles and cloud adoption mean organizations are grappling with a rapidly expanding attack surface. According to the 2024 Verizon Data Breach Investigations Report, web applications remain a primary target for cyberattacks, accounting for nearly half of all incidents. Moreover, Veracode’s latest software security research found an alarming increase in the average fix time for flaws once discovered, with organizations taking three months—or 47 percent— longer than five years ago.
Veracode’s latest innovations address these critical challenges head on by offering frictionless integration for comprehensive risk management, faster remediation, and intuitive scans with real-time results. Organizations can more effectively balance the speed of modern development with software security.
Automated Discovery, Risk-based Prioritization, and Real-time Reporting
Veracode EASM capabilities automate external attack surface discovery by identifying and continuously monitoring potential entry points for bad actors. The product automatically tracks internet-exposed systems and services, including APIs, web apps, mobile applications, and cloud-based assets—many of which are often unknown or unmanaged. With automated discovery, EASM uncovers blind spots and delivers:
- Complete Visibility: Consistent identification and monitoring of all external assets to reduce visibility gaps.
- Risk-Based Prioritization: Streamlined focus on the most critical threats to minimize points of entry for an attacker.
- Seamless Security Integration: With a connector to Veracode Risk Manager (VRM) planned for later this year, static (SAST), software composition (SCA), and dynamic analysis findings are prioritized and contextualised in one place, giving a holistic view of risk and control.
Maki said, “In today’s threat landscape, organizations must contend with an unprecedented number of potential entry points,” Maki explained. “Veracode EASM provides security teams with the attacker’s perspective and delivers the capability to continuously identify, analyze, and mitigate risks before exploitation can occur.”
Veracode’s new Enterprise Mode for DAST Essentials is a significant advancement in dynamic application security testing. Leveraging the capability, security teams can more easily prioritize and remediate critical vulnerabilities in web applications and APIs.
With features designed to accommodate large-scale, complex application portfolios, key capabilities include:
- Advanced crawling and auditing for deep, highly customizable, and accurate scanning
- AI-Assisted auto-login to reduce authentication failures and easily implement the DAST program across the organization
- Internal Scan Management (ISM) for scanning behind corporate firewalls
- A Streamlined, intuitive interface for faster, simpler setup and configuration
- Real-time flaw reporting and a panoramic view of risk across projects
"DAST Enterprise Mode empowers security teams to work faster, smarter, and safer,” noted Maki. “With real-time analysis in a unified platform, it eliminates the challenge of fragmented tools and enables mature, resilient risk management with centralized visibility and control.”
Experience the Tools Live at RSAC 2025
Veracode will showcase its latest capabilities at RSAC Conference in San Francisco (April 28 - May 1, 2025). Visit booth #1243 for interactive demos and expert discussions on how to stay ahead of emerging threats and improve security posture.
Learn more about Veracode’s products on the website.
About Veracode
Veracode is a global leader in Application Risk Management for the AI era. Powered by trillions of lines of code scans and a proprietary AI-assisted remediation engine, the Veracode platform offers adaptive software security and is trusted by organizations worldwide to build and maintain secure software from code creation to cloud deployment. Thousands of the world’s leading development and security teams use Veracode every second of every day to get accurate, actionable visibility of exploitable risk, achieve real-time vulnerability remediation, and reduce their security debt at scale. Veracode is a multi-award-winning company offering capabilities to secure the entire software development life cycle, including Veracode Fix, Static Analysis, Dynamic Analysis, Software Composition Analysis, Container Security, Application Security Posture Management, Malicious Package Detection, and Penetration Testing.
Learn more at www.veracode.com, on the Veracode blog, and on LinkedIn and X.
Copyright © 2025 Veracode, Inc. All rights reserved. Veracode is a registered trademark of Veracode, Inc. in the United States and may be registered in certain other jurisdictions. All other product names, brands or logos belong to their respective holders. All other trademarks cited herein are property of their respective owners.
View source version on businesswire.com: https://www.businesswire.com/news/home/20250423385599/en/
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Bureau Veritas:A Robust First Quarter and an Unchanged 2025 Outlook; Increased Returns to Shareholders with a EUR 200m Share Buyback Program24.4.2025 07:30:00 CEST | Press release
Bureau Veritas (BOURSE:BVI): This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20250423971668/en/ Hinda Gharbi, CEO at Bureau Veritas Q1 2025 Key figures1 › Revenue of EUR 1,558.7 million, up 8.3% year-on-year and up 7.3% organically › Strong organic growth from Industry at +14.3%, Marine & Offshore at +11.8% and Certification at +10.9% with moderate growth for Agri-Food & Commodities at +6.0%, Consumer Products Services at +3.4%, and Buildings & Infrastructure at +2.5% › Positive scope effect of 1.4%, from bolt-on acquisitions (+3.0% contribution), net of disposals (-1.6% contribution) › Negative currency impact of 0.4%, resulting from the euro’s appreciation against most currencies Q1 2025 Highlights › Steady and consistent growth in every region, demonstrating clear business plans and showing strong execution › Broad growth across all activities. Capex activities driven by a solid backlog, and Opex activities derived from sust
Galderma Delivers Record First Quarter Net Sales of 1.129 Billion USD, Including Strong Performance From Two Launches With Blockbuster Potential, and Confirms Full-Year Guidance24.4.2025 07:00:00 CEST | Press release
Ad hoc announcement pursuant to Art. 53 LR Galderma Group AG (SIX:GALD), the pure-play dermatology category leader, today announced its sales performance for the first quarter of 2025. Net sales: Achieved 1,129 million USD in net sales, up 8.3% year-on-year on a constant currency basis, primarily driven by volume, complemented by favorable mix Results ahead of expectations: Net sales benefited from focused execution, favorable phasing in Injectable Aesthetics, and stronger than expected ramp-up of Nemluvio Broad-based growth: Strong performance momentum across product categories and across geographies, with constant currency year-on-year growth of 9.9% for Injectable Aesthetics, 7.8% for Dermatological Skincare, and 4.9% for Therapeutic Dermatology, which includes net sales of 39 million USD for Nemluvio® (nemolizumab) Innovation, science and education leadership: Further advanced its category leadership in dermatology: with the launch of Nemluvio and Relfydess™ (RelabotulinumtoxinA),
Engelhart and e.optimum Strengthen Their Partnership With a Further Onshore Wind PPA, Supporting Germany’s Energy Transition24.4.2025 07:00:00 CEST | Press release
The Global Commodities and Renewable Energy Trader, Engelhart, is delighted to announce the signing of a further power purchase agreement (PPA) with e.optimum, one of Germany’s largest independent energy suppliers. Following the first PPA signed in January 2025, this new agreement secures renewable electricity from additional onshore wind turbines with a total capacity of approximately 167 MWfromJuly to December 2025. This is enough green power to supply around 31,000 households. This second PPA marks a significant expansion of the partnership between the two companies. It represents a 195% increase in contracted capacity, bringing the total from 86 MW to 253 MW of onshore wind power. Furthermore, the agreement contributes directly to Germany’s transition to a net zero-carbon economy by 2045. Matthias Seel, Senior Originator Corporate Customers Europe at Engelhart, commented: "The second PPA with e.optimum is another milestone in our joint partnership. Especially in uncertain economic
Textron Aviation Raises the Bar for Workforce Development With State-of-the-Art Career & Learning Center23.4.2025 22:00:00 CEST | Press release
Textron Aviation Inc. a Textron Inc. (NYSE: TXT) company, today announced its new Career & Learning Center is complete and fully operational serving prospective, current and future Textron Aviation employees. Strategically located on the company’s East Wichita Campus, this state-of-the-art facility expands the training footprint to more than 75,000 square feet and provides a world-class employee experience during the application, hiring, onboarding and training processes. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20250423874476/en/ Textron Aviation Career and Learning Center | Textron Aviation “The Textron Aviation Career & Learning Center is an important investment in building the next generation of aviation manufacturing, support and professional talent,” said Ron Draper, president and CEO. “Recruiting, hiring and training a world-class workforce is vital to our ability to provide the best aviation experience for our cu
TSMC Unveils Next-Generation A14 Process at North America Technology Symposium23.4.2025 20:40:00 CEST | Press release
Showcasing TSMC’s latest offerings for high performance computing, smartphone, automotive, and IoT applications TSMC (TWSE: 2330, NYSE: TSM) today unveiled its next cutting-edge logic process technology, A14, at the Company’s North America Technology Symposium. Representing a significant advancement from TSMC’s industry-leading N2 process, A14 is designed to drive AI transformation forward by delivering faster computing and greater power efficiency. It is also expected to enhance smartphones by improving their on-board AI capabilities, making them even smarter. Planned to enter production in 2028, the current A14 development is progressing smoothly with yield performance ahead of schedule. Compared with the N2 process, which is about to enter volume production later this year, A14 will offer up to 15% speed improvement at the same power, or up to 30% power reduction at the same speed, along with more than 20% increase in logic density. Leveraging the Company’s experience in design-tech
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom