91% noise: A look at what’s wrong with traditional SAST tools

Mirko Zorz

Traditional static application security testing (SAST) tools are falling short. That’s the key takeaway from a recent report that tested these tools against nearly 3,000 open-source code repositories. The results: more than 91% of flagged vulnerabilities were…