Risk

7/1/2013
03:52 PM
Dark Reading
Dark Reading
Products and Releases
50%
50%

Cenzic Grants Rights On Some Key Patents To WhiteHat Security

Litigation between the two companies will be dismissed

Campbell, CA – July 1, 2013 – Cenzic, the leading provider of application security intelligence to reduce security risks, today announced that Santa Clara, Calif.-based WhiteHat Security has licensed Cenzic's foundational patents. Under this license agreement, Cenzic extends certain rights to WhiteHat to utilize its patents. Litigation between the two companies will be dismissed, with prejudice, with this license.

As part of this license agreement, WhiteHat, for an undisclosed sum, has licensed Cenzic's patents and related applications, which are foundational for web application scanner products and related services. These Cenzic patents and applications have been licensed by other leading web application security providers, including HP, IBM, and NTObjectives. With this license agreement, Cenzic also receives rights to all of WhiteHat's issued patents and related applications.

"We're glad that WhiteHat Security has taken responsibility in recognizing the value of our foundational patents in the application security space and are thereby licensing them," said John Weinschenk, CEO and President of Cenzic. "This further validates the unique distinction of Cenzic's technology patents to the extent that several large players and former competitors in the space utilize our technology today to strengthen their own capabilities. We're pleased to see our unique and differentiated technology innovations being adopted in this way."

About Cenzic

Cenzic provides the leading application security intelligence platform to continuously assess Cloud, Mobile and Web applications to reduce online security risk. Cenzic's solutions scale from single applications to enterprise-level deployments with hybrid approaches that enable testing of applications at optimal levels. Cenzic helps brands of all sizes protect their reputation and manage security risk in the face of malicious attacks. Cenzic's solutions are used in all parts of the software development lifecycle, and most importantly in production, to protect against new threats even after the application has been deployed. Cenzic's application security intelligence platform is architected to handle web, cloud and mobile applications and is the first to provide risk reduction recommendations for business, application developers and specific applications. Today, Cenzic secures more than half a million online applications and trillions of dollars of commerce for Fortune 1000 companies, all major security companies, government agencies, universities and SMBs. More information about Cenzic can be found at www.cenzic.com.

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
What We Talk About When We Talk About Risk
Jack Jones, Chairman, FAIR Institute,  7/11/2018
Ticketmaster Breach Part of Massive Payment Card Hacking Campaign
Jai Vijayan, Freelance writer,  7/10/2018
7 Ways to Keep DNS Safe
Curtis Franklin Jr., Senior Editor at Dark Reading,  7/10/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: Locked device, Ha! I knew there was another way in.
Current Issue
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-14337
PUBLISHED: 2018-07-17
The CHECK macro in mrbgems/mruby-sprintf/src/sprintf.c in mruby 1.4.1 contains a signed integer overflow, possibly leading to out-of-bounds memory access because the mrb_str_resize function in string.c does not check for a negative length.
CVE-2018-14329
PUBLISHED: 2018-07-17
In HTSlib 1.8, a race condition in cram/cram_io.c might allow local users to overwrite arbitrary files via a symlink attack.
CVE-2018-14331
PUBLISHED: 2018-07-17
An issue was discovered in XiaoCms X1 v20140305. There is a CSRF vulnerability to change the administrator account password via admin/index.php?c=index&a=my.
CVE-2018-14333
PUBLISHED: 2018-07-17
TeamViewer through 13.1.1548 stores a password in Unicode format within TeamViewer.exe process memory between "[00 88] and "[00 00 00]" delimiters, which might make it easier for attackers to obtain sensitive information by leveraging an unattended workstation on which TeamViewer has ...
CVE-2018-14334
PUBLISHED: 2018-07-17
manager/editor/upload.php in joyplus-cms 1.6.0 allows arbitrary file upload because detection of a prohibited file extension simply sets the $errm value, and does not otherwise alter the flow of control. Consequently, one can upload and execute a .php file, a similar issue to CVE-2018-8766.