Vietnam.vn - Nền tảng quảng bá Việt Nam

Proactive application protection from design to deployment

DNVN - AWS has just released the preview version of AWS Security Agent - an intelligent protection agent for the entire application development lifecycle. This agent not only automates security assessments according to the organization's requirements but also provides on-demand, contextual penetration testing capabilities.

Tạp chí Doanh NghiệpTạp chí Doanh Nghiệp04/12/2025

Currently, there are two popular types of application security testing tools: static testing tools (SAST) test code without considering the actual operating environment, while dynamic testing tools (DAST) evaluate the running application but ignore the overall context of the application.

By continuously monitoring from design to deployment, AWS helps businesses proactively prevent security vulnerabilities from the early stages of development.

Both of these tools are limited by not understanding the application context, not capturing the whole picture - from the design, operating environment, to the potential security threats of the application. This forces security teams to perform manual assessments, which takes a significant amount of time. Especially with penetration testing, the process is even longer when waiting for arrangements from an external consultant or internal team.

With every application requiring manual assessment and penetration testing, the backlog is growing, leaving applications waiting weeks or even months before they can be security validated for deployment. This widens the gap between software release frequency and security assessment.

When security is not fully implemented across all applications, businesses are forced to make trade-offs between ensuring safety and meeting deadlines, leading to the risk of security vulnerabilities. According to statistics, while more than 60% of organizations perform web application updates weekly or more frequently, up to 75% only conduct security testing monthly or less frequently. Notably, Cypress Data Defense's 2025 report indicates that 62% of organizations are forced to accept deploying vulnerable source code to meet business deadlines.

AWS Security Agent is contextually aware, understanding your application from design to code to unique security requirements. It not only scans and detects security breaches automatically, but can also perform penetration testing on demand without any pre-planning.

In particular, this penetration testing agent also creates personalized attack scenarios based on learning from multiple sources: security requirements, design documents, and source code. It adapts flexibly during operation, analyzing factors such as endpoints, status codes, authentication information, and errors. As a result, complex security vulnerabilities are detected early before the production stage, ensuring the application operates safely from the moment it is launched.


Phuong Ha

Source: https://doanhnghiepvn.vn/chuyen-doi-so/kinh-te-so/bao-ve-ung-dung-chu-dong-tu-khi-thiet-ke-den-trien-khai/20251205054642085


Comment (0)

Please leave a comment to share your feelings!

Same tag

Same category

Notre Dame Cathedral in Ho Chi Minh City is brightly lit to welcome Christmas 2025
Hanoi girls "dress up" beautifully for Christmas season
Brightened after the storm and flood, the Tet chrysanthemum village in Gia Lai hopes there will be no power outages to save the plants.
The capital of yellow apricot in the Central region suffered heavy losses after double natural disasters

Same author

Heritage

Figure

Enterprise

Dalat coffee shop sees 300% increase in customers because owner plays 'martial arts movie' role

News

Political System

Destination

Product