V2EX sast

Sast

Definition / 释义

SASTStatic Application Security Testing 的缩写,意思是静态应用安全测试(也常说“静态代码安全扫描/静态分析”)。指在不运行程序的情况下,通过分析源代码/字节码/编译产物来发现潜在安全漏洞与不安全编码模式(如注入、越权、弱加密用法等)。
(在不同领域里也可能有其他缩写含义,但在软件安全语境中最常见的是上述含义。)

Pronunciation / 发音

/s.e.esti/

Examples / 例句

Our team runs SAST on every pull request.
我们团队会在每个拉取请求上运行 SAST。

Although SAST can catch many vulnerabilities early, it may also produce false positives that require manual review.
尽管 SAST 能在早期捕捉到许多漏洞,但它也可能产生误报,需要人工复核。

Etymology / 词源

来自首字母缩略词 Static Application Security Testing,属于信息安全领域的常用术语;“static(静态)”强调的是在不实际执行程序的前提下进行分析。

Related Words / 相关词

Literary Works / 文学与著作中的用例

  • OWASP Testing Guide:在应用安全测试方法中讨论静态分析/代码审计(与 SAST 概念密切相关)。
  • *NIST Secure Software Development Framework (SSDF)*(NIST):在安全开发实践中提到使用静态分析工具作为保障措施之一。
  • Building Secure Software(John Viega, Gary McGraw):讨论安全软件工程与静态代码分析在缺陷发现中的作用。
  • *Secure Coding in C and C++*(Robert C. Seacord):强调用静态分析等手段发现不安全编码模式(与 SAST 工具实践相通)。
关于     帮助文档     自助推广系统     博客     API     FAQ     Solana     728 人在线   最高记录 6679       Select Language
创意工作者们的社区
World is powered by solitude
VERSION: 3.9.8.5 6ms UTC 19:41 PVG 03:41 LAX 11:41 JFK 14:41
Do have faith in what you're doing.
ubao msn snddm index pchome yahoo rakuten mypaper meadowduck bidyahoo youbao zxmzxm asda bnvcg cvbfg dfscv mmhjk xxddc yybgb zznbn ccubao uaitu acv GXCV ET GDG YH FG BCVB FJFH CBRE CBC GDG ET54 WRWR RWER WREW WRWER RWER SDG EW SF DSFSF fbbs ubao fhd dfg ewr dg df ewwr ewwr et ruyut utut dfg fgd gdfgt etg dfgt dfgd ert4 gd fgg wr 235 wer3 we vsdf sdf gdf ert xcv sdf rwer hfd dfg cvb rwf afb dfh jgh bmn lgh rty gfds cxv xcv xcs vdas fdf fgd cv sdf tert sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf shasha9178 shasha9178 shasha9178 shasha9178 shasha9178 liflif2 liflif2 liflif2 liflif2 liflif2 liblib3 liblib3 liblib3 liblib3 liblib3 zhazha444 zhazha444 zhazha444 zhazha444 zhazha444 dende5 dende denden denden2 denden21 fenfen9 fenf619 fen619 fenfe9 fe619 sdf sdf sdf sdf sdf zhazh90 zhazh0 zhaa50 zha90 zh590 zho zhoz zhozh zhozho zhozho2 lislis lls95 lili95 lils5 liss9 sdf0ty987 sdft876 sdft9876 sdf09876 sd0t9876 sdf0ty98 sdf0976 sdf0ty986 sdf0ty96 sdf0t76 sdf0876 df0ty98 sf0t876 sd0ty76 sdy76 sdf76 sdf0t76 sdf0ty9 sdf0ty98 sdf0ty987 sdf0ty98 sdf6676 sdf876 sd876 sd876 sdf6 sdf6 sdf9876 sdf0t sdf06 sdf0ty9776 sdf0ty9776 sdf0ty76 sdf8876 sdf0t sd6 sdf06 s688876 sd688 sdf86