🚩Weekly Product Update: Static and Dynamic Improvements

Happy December! Here's a summary of the latest release:

 

#Veracode Static Analysis​ 

New support for the GCC 8.3 compiler on Red Hat Enterprise Linux. 

 

#Veracode Dynamic Analysis​ 

  • New Target URL Search Feature 
    • Allows you to search for individual URL scans in addition to searching for a specific Dynamic Analysis. 
    • This capability enables you to easily identify which scans are associated with a specified URL. 
  • CSP Header Checks 
    • Checks for missing or misconfigured script execution policies in Content Security Policy (CSP) headers of web applications. 
  • Expanded Secure Cookie Attributes List 
    • Expanded list of known secure cookie attributes, such as SameSite, Secure, and HttpOnly.  
    • Checks web applications for secure cookie attributes on this list before reporting missing attributes as flaws. 

 

#Veracode Platform​ 

  • Updates to the Findings REST API 
    • Retrieve the expiration date of the remediation grace period for findings that violate a security policy. 
    • Retrieve findings with comments or mitigations added after a specific date, such as the date of your most recent scan. 
  • Healthcheck REST API 
    • You can use the Veracode Healthcheck REST API to test the availability of Veracode core services. 

 

#Veracode ELearning​ 

  • Improved eLearning Performance - increased loading speed of the My Team's Courses page 
  • Auto-Extend for eLearning Enabled by Default - the default setting for new Veracode eLearning course track assignments is to automatically extend when their subscription periods end. 

 

📣 Did you know?  

To keep up with product updates, you can subscribe for weekly digest emails – a summary of new posts made in the Product Announcements group from the last week. Here’s how:  

  1. Join Product Announcement Group   
  2. Make sure your notification is set to “Weekly Digest” 

lucas.ferreira and VCode like this.

Topics (6)

No articles found
Loading

Ask the Community

Get answers, share a use case, discuss your favorite features, or get input from the community.