
Checkmarx One 2025 Pricing, Features, Reviews & Alternatives
- Score 1.80
- 5 reviews
Checkmarx One is an enterprise cloud-native application security platform focused on providing cross-tool, correlated results to help AppSec and developer teams prioritize where to focus time and resources. Checkmarx One offers comprehensive application scanning across the SDLC: *Static Application Security Testing (SAST) *Software Composition Analysis (SCA) *API security *Dynamic Application Security Testing (DAST) *Container security *IaC security *Correlation, prioritization and risk management *Codebashing secure code training *AI security *Tech partnerships extending AppSec into runtime analysis *Developer tool integrations including: CI/CD tools, development frameworks, feedback tools, IDEs, programming languages and SCMs Checkmarx One helps secure application development from the first line of code through deployment and runtime in the cloud. With an ever-evolving toolset, Checkmarx One helps consolidate AppSec solutions and make better sense of results.
Preferred Vulnerability Management Tool
Can be used to analyse application, source code, byte code, and binaries for coding and design conditions.Key elements of the checkmarx dashboard can be split into two sections, namely scan, statistics and scan trends.
6 months ago
CxSAST - A great static software analyzer
CXSast has several very important advantages. The first is that the code is scanned before it is even compiled, this means that de developers can scan and fix while they are still in the coding process. Second CXSAST fully integrates in any devops proces. Scanning and reporting will be doen from within the screens developers work in, so no unneccesary switching between screens. (see extention CXflow) Nex to that the rules (or queries) are open, every one can see them or a organisation can tailor them to their own need. If needed a FP free setup can be created! V9.3 now enable installation of the engines on Linux, you can dockarize the stuff Last but not least CXSast can be setup with additions such as CX-SCA (opensource analysis) and CX-IAST (passive IAST scanning)
1 year ago
Super expensive but also feels outdated
Overall I did not enjoy using it.
1 year ago
Checkmarx a strong and reliable competitor
It has been a good experience, the support is fast and reliable. The tool work as expected and you can use the api integration to go even further.
1 year ago
Gives a full 360 degree view of vulnerabilities in static code
My personal overall experience with SAST is positive. I like that I can tweak queries myself and if there is something I can't do, support is just a phone call/ticket away. They respond to all inquiries very quickly.
2 years ago

Xygeni Security 2025 Pricing, Features, Reviews & Alternatives
- Score 1.67
- 3 reviews
Xygeni Security specializes in Application Security Posture Management (ASPM), using deep contextual insights to effectively prioritize and manage security risks while minimizing noise and overwhelming alerts. Xygeni's innovative technologies automatically detect malicious code in real-time upon new and updated components publication, immediately notifying customers and quarantining affected components to prevent potential breaches. With extensive coverage spanning the entire Software Supply Chain—including Open Source components, CI/CD processes and infrastructure, Anomaly detection, Secret leakage, Infrastructure as Code (IaC), and Container security—Xygeni Security ensures robust protection for your software applications. Trust Xygeni to protect your operations and empower your team to build and deliver with integrity and security. Secure your Software Development and Delivery!
Xygeni boosted our productivity & secure our secrets
Implementing Xygeni has not only secured our secrets but also boosted our development team’s productivity. Its git hook integration is exceptional, proactively catching issues and saving valuable time, allowing our developers to focus more on innovation.
10 months ago
Starting with Xygeni
As a financial institution, the security of sensitive data is paramount. Xygeni’s deployment has led to a significant improvement in the control of secret disclosures, seamlessly integrating with our existing workflows. This has enabled us to enhance our security practices effectively.
1 year ago
Real Transformation of our Cybersecurity Strategy
The platform's comprehensive security scanning across the CI/CD pipelines meticulously examines every phase and aspect of the development and deployment process to effectively identify potential security vulnerabilities and threats. Its automated approach seamlessly integrates with all my pipelines, allowing for effortless implementation across my entire software development lifecycle. Xygeni's robust detection and notification systems continuously monitor for potential threats, providing real-time alerts when vulnerabilities are detected or exploited.
2 years ago

Snyk 2025 Pricing, Features, Reviews & Alternatives
- Score 1.53
- 19 reviews
Snyk is a cloud-based application security and testing platform, which helps enterprises discover and fix vulnerabilities across open source libraries, containers, or codes throughout the development process. Features include runtime monitoring, reporting, exploitability indicators, alerts, and prioritization. The platform allows developers to test projects directly from the Git repository and monitor them for new issues. IT professionals can also add automated Snyk test to CI/CD pipeline and prevent vulnerabilities from obstructing the application building process. Users can determine the dependency path through which vulnerabilities are introduced and prioritize them based on a built-in scoring system. It lets developers detect newly deployed and updated workloads in Kubernetes clusters, find potential risky settings, and monitor issues using an auditable inventory. Snyk offers integration with various third-party platforms including JIRA, Jenkins, GitHub, and GitLab. The IDE plugins help developers perform real-time testing and resolve issues within workflows. Using the semantic analysis feature, testers can process codes in bulk, track modified patterns, and recognize security issues along with metadata.
Great service
Helps me keep on top of the dependent packages that my software relies on and motivates me to help in open source software with issue reporting or making PRs if I can.
3 months ago
be the Snykiest
i enjoyed using snyk so not bad
4 months ago
Works well
Helpful tool that integrates seamlessly and works as advertised.
5 months ago
Reviews on Snyk
We can identify security vulnerabilities during the development and fix them. Its easy to use, and the depth at which the scans are performed to find the vulnalerabities is great.
7 months ago
Your security agent
Overall, the plugin is pretty handy to get started with but I would like to see smarter analysis.
8 months ago
Snyc guards open source
Snyc guards our Node.js projects in our Medical applications
9 months ago
A good easy to use security tool
We were looking to have a quick method of checking for vulnerabilities in open source, Snyc fir that bill perfectly. It was fast to set up and the cost was quite low. A great tool.
11 months ago
A must have for all node.js dev
Has delivered value from the day I started using it. I hope you will enjoy it too.
1 year ago
One of the best vulnerability scanning tools around
Have been using Snyk for around 1 year now and it's one of the tool which we can't avoid though it annoys us now and then by finding new vulnerabilities in our packages and forcing us to mitigate the risk. They provide details of the vulnerability and in most cases the version to fix it. It integrates very well with the build pipelines and other CI/CD tools along with a nice IntelliJ plugin.
1 year ago
Testing Snyc
It is fast at making the fixes it explains thing well
1 year ago

IDA Pro 2025 Pricing, Features, Reviews & Alternatives
- Score 0.00
- 1 review
IDA Pro as a disassembler is capable of creating maps of their execution to show the binary instructions that are actually executed by the processor in a symbolic representation (assembly language). Advanced techniques have been implemented into IDA Pro so that it can generate assembly language source code from machine-executable code and make this complex code more human-readable. The debugging feature augmented IDA Pro with the dynamic analysis. It supports multiple debugging targets and can handle remote applications. Its cross-platform debugging capability enables instant debugging, easy connection to both local and remote processes and support for 64-bit systems and new connection possibilities. Thanks to its open plugin architecture and IDC, users can easily extend IDA to be in line with own requirements and level up IDA Pro’s functionality.
Reverse everything with IDA
The plugins are really good, and overall you get what you are expecting to get. really easy to analyze with it after you get to know the program
2 years ago