Automated source code security analysis

Dec 21, 2005 20:31 GMT  ·  By

Fortify Software, a startup source-code security technology developer, managed to sign a major deal on Tuesday when Oracle announced plans to use Fortify's solutions to find holes in their database and middleware software.

According to Mary Ann Davidson, Oracle Chief Security Officer, the company has been searching for a suited automated application which could be able to examine Oracle's source code, but until now, none of the offers Oracle received was exactly what Oracle was looking for. Apparently, Fortify was the first company to listen to Oracle's description of its development process and to create a perfectly customized software to meet Oracle's needs.

Oracle's code base has more than 30 million lines, and is the first top-tier commercial software developer to sign on as a Fortify customer. Still, the company can't complain that it was neglected by the big players of the tech scenery, as its client's portfolio includes a number of financial services companies, as well as Flash maker Macromedia.