红联Linux门户
Linux帮助

ThreadFix 1.1发布,软件漏洞管理系统

发布时间:2013-03-27 09:54:48来源:红联作者:empast
ThreadFix 是软件漏洞聚合和管理系统, 可让你减少修复软件漏洞所花费的时间。它从动态、静态、手动测试的数据中导入结果,然后提供一个集中的视图来展示软件安全缺陷。

ThreadFix 1.1 发布了,主要改进内容包括:

Support for IBM Security AppScan Enterprise Scans (#166)
Support for IBM Security AppScan Source Scans (#115)
Significant improvements to JIRA integration/support (#204, #205, #210)
Support for NTObjectives NTO Spider scans (#162)
Support for Microsoft Team Foundation Server (TFS) as a defect tracker (#117)
Adding user comments for vulnerabilities (#55)
Editing of manually-entered vulnerabilities (#160)
"Filter by CWE" for vulnerabilities (#163)
Updated to CWE 2.4 (#167)
Updated security model to allow for fine-grained user permissions (#56) (this was a huge priority for larger enterprises deploying ThreadFix)
Update 'Importing Self-Signed Certificates' Wiki Page (#209)
Updated Snort rule generation (#113)
Updated Brakeman Importer (#236)
Updated open source license from Mozilla Public License 1.1 to Mozilla Public License 2.0 (#181)
Various updates and bug fixes and enhancements (#159, #168, #176, #179, #180, #189, #190, #196, #201, #203, #206, #207, #208, #211, #213, #216, #217, #219, #221, #222, #223, #225, #227, #228, #229, #230, #236, #238, #240)

项目主页:https://code.google.com/p/threadfix/

下载地址:https://code.google.com/p/threadfix/downloads/list

来自:开源中国社区
文章评论

共有 0 条评论