HCL AppScan Standard 10.10.0 performs black-box security testing against running websites, web applications, and APIs. It combines automated application discovery with browser interaction and active testing so that security teams can identify vulnerabilities and review the technical requests and responses associated with each finding. Manual exploration and multi-step workflow recording can also be used when an application cannot be fully covered through automated discovery. Version 10.10.0 adds support for evaluating LLM applications, with tests addressing prompt injection, sensitive information exposure, and related risks. Additional changes improve automatic authentication, workflow diagnostics, AngularJS application coverage, custom scripting, and regulatory reporting. These capabilities make it suitable for applications that combine conventional web functionality with complex workflows or AI-related components.
HCL AppScan Standard 10.10.0 combines application exploration and active security testing to identify weaknesses in web applications and APIs. Automated scans can be supplemented with manual exploration and recorded workflows when an application contains routes or processes that are difficult to discover automatically. In this version, AppScan adds DAST checks for LLM-based applications and covers issues such as prompt manipulation and sensitive information disclosure. The release also refines multi-step workflow diagnostics, automatic login, custom JavaScript scripting, AngularJS SPA coverage, information masking, and regulatory reporting. These capabilities are particularly relevant to organizations that test applications with complex authentication, multi-stage user actions, or integrated AI services.
HCL AppScan Standard 10.10.0 combines automated exploration with active security testing to examine how web applications and APIs behave while they are running. Security teams can use automated discovery for general coverage and manual or recorded workflows for application areas that require specific user actions. The product records the requests and responses associated with findings so that results can be reviewed and reproduced. In version 10.10.0, AppScan adds LLM-focused DAST checks and expands support for testing applications that expose conversational or AI-related interfaces. Other updates affect authentication handling, multi-step workflow troubleshooting, AngularJS applications, custom scripting, data masking, and compliance reporting. The release therefore broadens the range of application scenarios that can be tested without changing the core DAST model.
HCL AppScan 10.10.0 focuses on application security testing. By leveraging SAST, DAST, IAST, and SCA capabilities, it covers multiple types of security risks throughout application development, testing, and delivery. It addresses the high cost of manual application security testing, delayed vulnerability discovery, and inefficient risk management.
HCL AppScan 10.10.0 is an application security testing platform that combines SAST, DAST, IAST, and SCA to identify and assess vulnerabilities across source code, web applications, APIs, and third-party components.
|