AppSecNews

RASP

Runtime Application Self-Protection

Detect and block attacks from inside the running application process.

9 tools profiled

How it differs Runs inside the production app and blocks attacks as they happen. IAST finds bugs with similar instrumentation during testing; a WAF filters traffic in front of the app rather than inside it.

License
Subcategory
Deployment
Languages
Integrations
Maturity
Signals
Clear

2 tools match

  • ModSecurity

    OWASP

    RASP

    An open source web application firewall engine that embeds in a web server or proxy and evaluates requests and responses against a rule language, most often the OWASP Core Rule Set.

    Open source
    Established
  • RASP

    A next-generation WAF using in-path agents and modules that tag requests with attack signals locally and block sources once they cross a threshold, rather than dropping on a single pattern match.

    Commercial
    Established
  • ModSecurity

    OWASP

    An open source web application firewall engine that embeds in a web server or proxy and evaluates requests and responses against a rule language, most often the OWASP Core Rule Set.

    Open source Established
    RASP
  • A next-generation WAF using in-path agents and modules that tag requests with attack signals locally and block sources once they cross a threshold, rather than dropping on a single pattern match.

    Commercial Established
    RASP
Tick up to 4 tools above.