Archive for March, 2012

  • Klocwork® Achieves CWE Compatibility Certification

    on Mar 26, 12 • by Meranda Powers • with No Comments

    Software security assurance solution combines CWE Certification with leading source code analysis capabilities Burlington, Mass — Mar 26, 2012 — Klocwork Inc, the global leader in automated source code analysis (SCA) solutions for developing more secure and reliable software, today announced that Klocwork Insight™ has achieved an official Certificate of Common Weakness Enumeration (CWE™) Compatibility for attaining the highest level of CWE support that is currently offered by The MITRE Corporation’s formal CWE Compatibility and Effectiveness Program. Klocwork is among a select group of organizations to achieve this software security certification. As a software assurance

    Read More »
  • Klocwork Insight™ 9.5 Continues Momentum With Recognition From Embedded Software Community

    on Mar 15, 12 • by Meranda Powers • with No Comments

    New on-the-fly source code analysis capabilitie earns Editor’s Choice Award and Embedded Award 2012 nomination within weeks of release Burlington, Mass — Mar 15, 2012 — Klocwork Inc, the global leader in automated source code analysis (SCA) solutions for developing more secure and reliable software, that Klocwork Insight 9.5 has been recognized by two leading award programs in the embedded industry. The product was honored with an Editor’s Choice Award from Military Embedded Systems magazine and was a finalist for the Embedded Award 2012. "Klocwork’s newest release, which offers instantaneous analysis of source code in

    Read More »
  • Perceptual False Positives

    on Mar 13, 12 • by Alen Zukich • with No Comments

    Perceptual False Positives

    As any static analysis or source code analysis vendor will tell you, false positives are a way of life.  As any user will tell you, false positives suck!  So what do you do about them?  Make the tools better at finding the real issues and provide automated filtering capabilities.  But I’m not here to talk about false positives where the tool is utterly wrong.  What I want to talk about today is what I call “perceptual false positives”. I’ve had discussions with customers where they tell me 80% of all their defects are false.  Odd,

    Read More »
  • Embedded Computing Design: The value of usability: Getting developers to ‘push the button’ on static analysis

    on Mar 7, 12 • by Lynn Gayowski • with No Comments

    The ubiquitous nature of embedded software has made source code analysis a critical component of the development process. Klocwork CTO Gwyn Fisher discusses the impact this technology has on software security and reliability, and emphasizes the importance of making static analysis a natural part of a developer’s coding practice. ECD: As embedded developers turn to multicore processors to optimize performance, how can analysis tools help control inevitable cost and schedule problems? FISHER: Any new development is an exercise in balancing expectation against risk. In the case of multicore, the naive expectation is always linear acceleration

    Read More »
  • Klocwork Insight 9.5 Continues to Roll…

    on Mar 6, 12 • by Brendan Harrison • with No Comments

    Wow, what a week last week. We’ve been busy spreading the word about Klocwork Insight 9.5 and all its on-the-fly-analysis goodness since late January and the reaction has been amazing, but last week took the cake. First, Klocwork Insight 9.5 won its first award: the Military Embedded Systems Editor’s Choice. Here’s an excerpt from their write-up: Software developers have enough on their plates without having to spend undue time analyzing their code. Sure, there is traditional source code analysis, whether done manually or by using techniques such as static or dynamic analysis, but Klocwork’s Insight

    Read More »
Scroll to top