Browse Definitions :
Definition

runtime application self-protection (RASP)

Runtime application self-protection (RASP) is security software that integrates with an application or its runtime environment during execution and constantly intercepts calls to the application to check their security, permitting those deemed safe and blocking those that could indicate an attack. RASP can protect against application attacks such as SQL injection because it can make sense of the commands involved and distinguish normal sequences from suspicious instructions or requests.

Application security is often neglected during software development and most apps lack the capacity to detect and block attacks. RASP adds security to applications that might otherwise be vulnerable. Because it has insight into what's happening within the application, RASP can analyze application behavior and the context in which it occurs, unlike perimeter-based protection, such as web application firewalls (WAF). That capacity makes it possible for the software to respond to attacks in real time.

RASP has two operational modes. In diagnostic mode, the software monitors calls to the application and sounds an alarm if a suspect call is made. In self-protection mode, RASP can prevent the execution of suspect instructions or terminate a user session.

RASP technology is designed for the two most popular application servers, Java virtual machine (JVM) and .NET Common Language Runtime. Additional implementations are expected. Vendors of RAST products include Contrast, HP, Immunio, Promon, Veracode, Waratek and WhiteHat Security.

Joseph Feiman first advocated the concept behind RASP in his 2014 research report, "Stop Protecting Your Apps; It's Time for Apps to Protect Themselves."

Jeff Williams delivers an introductory tutorial on RASP:

This was last updated in February 2017

Continue Reading About runtime application self-protection (RASP)

SearchCompliance

  • information governance

    Information governance is a holistic approach to managing corporate information by implementing processes, roles, controls and ...

  • enterprise document management (EDM)

    Enterprise document management (EDM) is a strategy for overseeing an organization's paper and electronic documents so they can be...

  • risk assessment

    Risk assessment is the identification of hazards that could negatively impact an organization's ability to conduct business.

SearchSecurity

  • whaling attack (whaling phishing)

    A whaling attack, also known as whaling phishing or a whaling phishing attack, is a specific type of phishing attack that targets...

  • cyber attack

    A cyber attack is any attempt to gain unauthorized access to a computer, computing system or computer network with the intent to ...

  • backdoor (computing)

    A backdoor is a means to access a computer system or encrypted data that bypasses the system's customary security mechanisms.

SearchHealthIT

SearchDisasterRecovery

  • risk mitigation

    Risk mitigation is a strategy to prepare for and lessen the effects of threats faced by a business.

  • call tree

    A call tree is a layered hierarchical communication model that is used to notify specific individuals of an event and coordinate ...

  • Disaster Recovery as a Service (DRaaS)

    Disaster recovery as a service (DRaaS) is the replication and hosting of physical or virtual servers by a third party to provide ...

SearchStorage

Close