Advisor
AppSec
Domains Application Security Application Security Testing (SAST / DAST / IAST / RASP) Dynamic Application Security Testing (DAST)
Dynamic Application Security Testing (DAST)
Dynamic Application Security Testing (DAST) refers to the process of analyzing running applications to identify security vulnerabilities by simulating external attacks.
Dynamic Application Security Testing (DAST) refers to the process of analyzing running applications to identify security vulnerabilities by simulating external attacks. Unlike static analysis, DAST operates without access to source code, instead interacting with applications in real time to detect issues such as injection flaws, authentication weaknesses, and configuration errors. Core capabilities of DAST solutions include automated scanning of web applications, APIs, and services during runtime, detection of vulnerabilities in live environments, and reporting of exploitable security gaps. These tools often support integration with development and deployment pipelines, enabling continuous assessment as applications evolve. DAST is typically used by security teams, application developers, and quality assurance professionals seeking to identify vulnerabilities that may not be apparent in source code or during static analysis. It is particularly valuable for organizations aiming to secure externally facing applications and comply with regulatory requirements. This category differs from Static Application Security Testing (SAST), which analyzes source code or binaries without executing the application, and from Interactive Application Security Testing (IAST), which combines elements of both static and dynamic analysis. Cyberin provides a platform for discovering and comparing DAST solutions to support informed decision-making.
25
Vendors
36
Products
82
Datapoints
Vendor Landscape how the vendors in this category relate
neutral · data-driven
Arrange bySimilarityThis categoryAppSec DomainThe Cyberin Framework (TCF)SeniorityEmployee countStock price
Related Wiki Articles
Some products are hidden. Sign up for free to see them all.
Filters
Reporting & Analytics, CI/CD Integrations, Compliance Standards, Scanning Method +4 more Show ↓
Vendor
All HCL Software Acunetix Rapid7 Invicti Qualys PortSwigger Veracode GitLab + 17 more
Reporting & Analytics
All Dashboards PDF Reports Reports Trend Analytics REST API Alerts Performance Metrics Compliance Reports
CI/CD Integrations
All Jenkins GitHub Actions GitLab CI Azure DevOps CircleCI Bitbucket Pipelines Azure Pipelines Bamboo
Compliance Standards
All HIPAA PCI DSS ISO 27001 OWASP Top 10 GDPR NIST CWE SOX
Scanning Method
All Active Scanning Authenticated Scanning Crawling Attack Simulation Out-Of-Band Testing
API Testing Support
All REST OpenAPI Import SOAP GraphQL Postman Collections
Authentication Support
All Form-Based OAuth API Keys JWT SSO Basic Auth SAML SSO
Application Types Covered
All APIs Web Applications Single-Page Applications Microservices Mobile Apps
Deployment model
All SaaS Cloud On-premises Hybrid Cloud-Native Agent-Based API Build-Time Integration
27 products
Sort:
Show:
Also in Application Security
Filter by Vendor
HCL Software
3 products
Acunetix
3 products
Rapid7
2 products
Invicti
2 products
Qualys
2 products
PortSwigger
2 products
Veracode
2 products
GitLab
1 product
Probely
1 product
Snyk
1 product
Appknox
1 product
Bright Security
1 product
Pentest-Tools
1 product
ImmuniWeb
1 product
NowSecure
1 product
Astra Security
1 product
Intruder
1 product
Tenable
1 product
AppCheck
1 product
Synopsys
1 product
Beagle Security
1 product
Indusface
1 product
Detectify
1 product
OWASP
1 product
StackHawk
1 product
0 selected
Compare
Looking for the best Dynamic Application Security Testing (DAST) tool? Our Advisor can help you compare.
Ask the Advisor
CYBERIN ADVISOR