SAST
SAST is a testing method that finds security vulnerabilities by analyzing source code without running the program.
Static application security testing (SAST) analyzes source code or compiled code without executing it to find security problems such as code vulnerable to injection or unsafe function calls. It contrasts with dynamic application security testing (DAST), which probes a running application from the outside.
Because it can be applied early in development, it is often run automatically in code editors or CI/CD pipelines.
This entry is based on AIPOST articles and widely known facts. If something is wrong, please send us a correction request.