HP releases Flash security tool for free | Internet News

HP releases Flash security tool for free

Mar 23, 2009
1 minute read
flashplayer.jpg

From the

I told you so

files:

Earlier this month, I wrote about HP’s new Flash security tool — that tool, now officially called SWFscan (just as I predicted) is out. But there is one surprise, the tool is free.

SWFscan is a tool that decompiles flash code and looks for vulnerabilities.HP security researcher Prajakta Jagdale discussed the tool (then under development and not public) at Black Hat in Washington DC in February.

HP claims that to date it has analyzed nearly 4,000 flash web apps, and surprisingly they found that 35 percent of them had some kind of security issue with them.

The release of SWFscan as a free tool is a good thing, in that it lowers the barriers to entry for developers to understand what they’re doing wrong.

Simple issues like information disclosure and more complex issues like cross site scripting vulnerabilties aren’t always easily caught during a development process – finding those with SWFscan might make the process a whole lot easier.

Internet News Logo

InternetNews is a source of industry news and intelligence for IT professionals from all branches of the technology world. InternetNews focuses on helping professionals grow their knowledge base and authority in their field with the top news and trends in Software, IT Management, Networking & Communications, and Small Business.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.