Fortify Software
Page Module:Infobox/styles.css has no content.Page Template:Infobox company/styles.css has no content.
| Lua error in package.lua at line 80: module 'Module:InfoboxImage/data' not found. | |
Company type | Software Vendor |
|---|---|
| ISIN | Script error: No such module "WikidataIB". |
| Industry | Script error: No such module "WikidataIB". |
| Genre | Software Security Assurance |
| Predecessor | Script error: No such module "WikidataIB". |
| Incorporated | Script error: No such module "WikidataIB". |
| Founded | Script error: No such module "WikidataIB". |
| Founder | Script error: No such module "WikidataIB". |
| Defunct | Script error: No such module "WikidataIB". |
| Successor | Script error: No such module "WikidataIB". |
| Headquarters | , United States |
Key people | John M. Jack (former CEO), Jacob West (head of Security Research Group), Brian Chess (former Chief Scientist), Arthur Do (former Chief Architect) |
| Revenue | Script error: No such module "WikidataIB". |
| Script error: No such module "WikidataIB". | |
| Script error: No such module "WikidataIB". | |
| Total assets | Script error: No such module "WikidataIB". |
| Owner | OpenText |
Number of employees | Script error: No such module "WikidataIB". |
| Website | OpenText OpenText Cybersecurity Cloud |
Script error: No such module "Check for conflicting parameters".Script error: No such module "Check for deprecated parameters".
Fortify Software, later known as Fortify Inc., is a California-based software security vendor, founded in 2003 and acquired by Hewlett-Packard in 2010,[1][2][3] Micro Focus in 2017, and OpenText in 2023.
Fortify offerings included static application security testing[4] and dynamic application security testing[5] products, as well as products and services that support software security assurance. In 2011, Fortify introduced Fortify OnDemand, a static and dynamic application testing service.[6]
History
Fortify Software was founded by Kleiner Perkins in 2003. Fortify Inc. was acquired by HP in 2010.[7]
On September 7, 2016, HPE CEO Meg Whitman announced that the software assets of Hewlett Packard Enterprise, including Fortify, would be merged with Micro Focus to create an independent company of which HP Enterprise shareholders would retain majority ownership.[citation needed]
Micro Focus CEO Kevin Loosemore called the transaction "entirely consistent with our established acquisition strategy and our focus on efficient management of mature infrastructure products" and indicated that Micro Focus intended to "bring the core earnings margin for the mature assets in the deal - about 80 percent of the total - from 21 percent today to Micro Focus's existing 46 percent level within three years."[8]
OpenText acquired Micro Focus (including Fortify Software products) in 2023.[9]
Security research
Fortify created a security research group that maintained the Java Open Review project[10] and the Vulncat taxonomy of security vulnerabilities in addition to the security rules for Fortify's analysis software.[11] Members of the group wrote the book Secure Coding with Static Analysis, and published research, including JavaScript Hijacking,[12] Attacking the build: Cross build Injection,[13] Watch what you write: Preventing Cross-site scripting by observing program output,[14] and Dynamic taint propagation: Finding vulnerabilities without attacking.[15]
See also
References
Page Template:Reflist/styles.css has no content.
- ^ Page Module:Citation/CS1/styles.css has no content."HP Completes Acquisition of Fortify Software, Accelerating Security Across the Application Life Cycle". September 22, 2010. Retrieved December 17, 2018.
- ^ Page Module:Citation/CS1/styles.css has no content.Roberts, Paul (April 5, 2004). "Software Searches for Security Flaws". PCWorld.com. Archived from the original on December 19, 2020. Retrieved December 17, 2018.
- ^ Page Module:Citation/CS1/styles.css has no content.Wagner, Jim (April 5, 2004). "A New Approach to Fortify Your Software". Internetnews.com. Retrieved December 17, 2018.
- ^ Page Module:Citation/CS1/styles.css has no content."HP Fortify Static Code Analyzer". Retrieved December 17, 2018.
- ^ Page Module:Citation/CS1/styles.css has no content."HP Unveils Real-Time Application Security Testing Tool". DarkReading.com. July 14, 2011. Retrieved December 17, 2018.
- ^ Page Module:Citation/CS1/styles.css has no content.Reitano, Victoria (February 15, 2011). "HP builds up its Security-as-a-Service". SD Times. Retrieved December 17, 2018.
- ^ Page Module:Citation/CS1/styles.css has no content."HP's Fortify Buyout Numbers Tell Lucrative Story For Software Security". Forbes. August 18, 2010. Retrieved May 4, 2020.
- ^ Page Module:Citation/CS1/styles.css has no content.Sandle, Paul; Baker, Liana B. (September 7, 2016). "HP Enterprise strikes $8.8 billion deal with Micro Focus for software assets". Reuters. Retrieved December 17, 2018.
- ^ Page Module:Citation/CS1/styles.css has no content.OpenText, Sponsored by (2023-05-09). "Fortified by multiple acquisitions, OpenText aims to deliver smarter, simpler security". SC Media. Retrieved 2025-07-29.
- ^ Page Module:Citation/CS1/styles.css has no content."Quality and Security for Open source Community". Archived from the original on December 16, 2006. Retrieved December 17, 2018.
- ^ Page Module:Citation/CS1/styles.css has no content."HP Fortify Taxonomy: Software Security Errors". Archived from the original on November 27, 2012. Retrieved December 17, 2018.
- ^ Page Module:Citation/CS1/styles.css has no content.Chess, Brian; O'Neil, Yekaterina Tsipenyuk; West, Jacob (March 12, 2007). "JavaScript Hijacking" (PDF). Retrieved December 17, 2018.
- ^ Page Module:Citation/CS1/styles.css has no content.Chess, Brian; Lee, Fredrick DeQuan; West, Jacob (October 10, 2007). "Attacking the Build through Cross-Build Injection". Retrieved December 17, 2018.
- ^ Page Module:Citation/CS1/styles.css has no content.Madou, Matias; Lee, Edward; West, Jacob; Chess, Brian (2008). "Watch What You Write: Preventing Cross-Site Scripting by Observing Program Output" (PDF). Retrieved December 17, 2018.
- ^ Page Module:Citation/CS1/styles.css has no content.Chess, Brian; West, Jacob (January 2008). "Dynamic taint propagation: Finding vulnerabilities without attacking". Information Security Tech. 13 (1): 33–39. doi:10.1016/j.istr.2008.02.003. Retrieved December 17, 2018.
External links
- No URL found. Please specify a URL here or add one to Wikidata.
- Page Module:Citation/CS1/styles.css has no content.Joy, Bill (September 26, 2006). "Software Isn't Complete Unless It's Secure". BusinessWeek. Retrieved December 17, 2018.