Browse Definitions :
Definition

runtime application self-protection (RASP)

Runtime application self-protection (RASP) is security software that integrates with an application or its runtime environment during execution and constantly intercepts calls to the application to check their security, permitting those deemed safe and blocking those that could indicate an attack. RASP can protect against application attacks such as SQL injection because it can make sense of the commands involved and distinguish normal sequences from suspicious instructions or requests.

Application security is often neglected during software development and most apps lack the capacity to detect and block attacks. RASP adds security to applications that might otherwise be vulnerable. Because it has insight into what's happening within the application, RASP can analyze application behavior and the context in which it occurs, unlike perimeter-based protection, such as web application firewalls (WAF). That capacity makes it possible for the software to respond to attacks in real time.

RASP has two operational modes. In diagnostic mode, the software monitors calls to the application and sounds an alarm if a suspect call is made. In self-protection mode, RASP can prevent the execution of suspect instructions or terminate a user session.

RASP technology is designed for the two most popular application servers, Java virtual machine (JVM) and .NET Common Language Runtime. Additional implementations are expected. Vendors of RAST products include Contrast, HP, Immunio, Promon, Veracode, Waratek and WhiteHat Security.

Joseph Feiman first advocated the concept behind RASP in his 2014 research report, "Stop Protecting Your Apps; It's Time for Apps to Protect Themselves."

Jeff Williams delivers an introductory tutorial on RASP:

This was last updated in February 2017

Continue Reading About runtime application self-protection (RASP)

SearchCompliance
  • pure risk

    Pure risk refers to risks that are beyond human control and result in a loss or no loss with no possibility of financial gain.

  • risk reporting

    Risk reporting is a method of identifying risks tied to or potentially impacting an organization's business processes.

  • chief risk officer (CRO)

    The chief risk officer (CRO) is the corporate executive tasked with assessing and mitigating significant competitive, regulatory ...

SearchSecurity
  • encryption key

    In cryptography, an encryption key is a variable value that is applied using an algorithm to a string or block of unencrypted ...

  • payload (computing)

    In computing, a payload is the carrying capacity of a packet or other transmission data unit.

  • script kiddie

    Script kiddie is a derogative term that computer hackers coined to refer to immature, but often just as dangerous, exploiters of ...

SearchHealthIT
SearchDisasterRecovery
  • What is risk mitigation?

    Risk mitigation is a strategy to prepare for and lessen the effects of threats faced by a business.

  • fault-tolerant

    Fault-tolerant technology is a capability of a computer system, electronic system or network to deliver uninterrupted service, ...

  • synchronous replication

    Synchronous replication is the process of copying data over a storage area network, local area network or wide area network so ...

SearchStorage
Close