Reshift Security

Reshift Security

Find vulnerabilities in your JavaScript code for free

16 followers

Reshift is a developer-first security tool that helps developers find and fix vulnerabilities in their custom JavaScript code.
Reshift Security gallery image
Reshift Security gallery image
Reshift Security gallery image
Reshift Security gallery image
Reshift Security gallery image
Reshift Security gallery image
Reshift Security gallery image
Launch tags:SaaSDeveloper ToolsTech
Launch Team
ace.me
ace.me
Your new website, email address & cloud storage
Promoted

What do you think? …

Sherif Koussa
Thanks a lot @hnshah for hunting us 🙌 Hi Everyone! ✋ Sherif Koussa here, Founder @ Reshift Security. I have been a developer, a software security auditor at a large bank, a hacker and an OWASP Chapter leader. Being a developer for 8 years and working directly with developers to help them secure their code for another 13 years, a few things became super clear to me: - Developers are cognitively overloaded with too many frameworks, technologies, and languages 🧠 - Software development and deployment speeds are 100x faster than they were 10 years ago 🚀 - Application security responsibility is falling on the laps of developers hence the “Shift Security Left” movement ⏪ - Existing tools are slow, inaccurate, expensive and/or ineffective 🐢 In 2019, we set out to change that. We created Reshift , a developer-first security tool that helps developers find and fix vulnerabilities in their custom code. Reshift is different from existing tools in the following categories: 1. Developer UX: Reshift is built from the ground up to help developers focus on writing and shipping secure code faster 🚀 2. Scanning Speed: Reshift uses DataLog technology which is 30x-40x faster than existing technologies 🚀 3. Findings Accuracy: Reshift’s comprehensive set of rules helps developers focus on the most important security bugs 🚀 I would love your feedback. Myself and our whole team will be responding all day and look forward to hearing your thoughts! We’re excited to help teams shift security left! I know I’ve had my fair share of success and horror stories helping clients integrate security earlier into the software development lifecycle. What has been your experience shifting security left? Meet the Team 2:00 - 3:00 EST Zoom Link: https://us02web.zoom.us/webinar/... Reshift Community: Join Reshift Community Slack channel to speak directly to our engineers and meet other security-minded developers, share what works and what doesn't in shipping secure code faster. We also schedule free educational webinars exclusive to our community. See you there!
David Mennie
@sherif_koussa Congratulations to you and the team. You have a unique, developer-centric approach to getting teams to understand and write secure code. It's awesome to see all of this experience manifested in a product that's very usable.
Sherif Koussa
@david_mennie Thank you very much David!
Olivia Harris
@david_mennie Thanks David, we've certainly worked hard to build a developer-centric security tool so it means a lot coming from you!
Allan Wille
Congrats Sherif - this is a big release in an increasingly critical field.
Sherif Koussa
@allan_wille Indeed, thanks a lot Allan!
Olivia Harris
@allan_wille Thanks Allan, it certainly is!
Olivia Harris
Quick poll for your engineering team: How many developers feel code security is important? (everyone raises their hands 🙋‍♂️🙋‍♀️) How many developers feel like they aren’t security experts? (likely also 100%🙋‍♂️🙋‍♀️) How many of them like fixing security bugs? (probably none of them 🐞❌) We hear this all the time from development teams. A developers job is to write and ship new features. Security is often a priority, but it is challenging to implement and often overloads the developer with more work that inherently slows down releases. Excited Reshift is looking to change that and make shifting security left easier for developers!
Sherif Koussa
@olivianharris I agree, being in the industry for over 20 year, both on the development and security sides on things, I have seen both sides of the table. Developers talk new features, and Security talk Risk and Compliance. While the concept of shifting security left is great in theory. It is much easier said than done. Application security has to be baked in the software development and has to be super easy to do, and that's exactly what Reshift is set out to do.
Kyle Campbell
I had been eagerly awaiting Javascript support since it was announced as NodeJS has become such a key part of our product platform. While we are just beginning our journey with ReShift and NodeJS, so far the scanner has been fast, and has not generated useless noise which is always the bane of automated code analysis.
Sherif Koussa
@kmcampott Awesome, thanks a lot for the great feedback :) Looking forward to supporting you guys get the most out of Reshift.
Olivia Harris
@kmcampott Thank you so much for that feedback, we're happy you were with us on this journey to releasing JavaScript! Always a pleasure working with Klipfolio :)
Mohan Yelnadu
Static code analysis for security has evolved, however little slower. Seeing reshift delivering result, effectively, and faster with very low false positives, made a solid impression in this domain. Developer like security, only and only when their speed to production is not slowed down in any way. I think, Reshift team, has kept this point in mind and fine tuned its operational performance. Continuous feedback, and in a shift-left way has been proven to increase the developer maturity in AppSec, in an iterative fashion. Having a product that fits in so well in this niche area is rare in this SAST domain. Thanks, Sherif, for doing a great job at this. All the best to you guys! I trust you would add more language support in the coming days, and help Developers at large. Thanks!
Sherif Koussa
@mohay 100% Agreed. Your feedback on the status of SAST and what's needed is really influential on how Reshift is shaped.
Olivia Harris
@mohay Wow thanks Mohan! I second all of that and we've witnessed it first hand. We have plans to support 3 new languages in the coming months and have big plans to help developers secure their code without the pain of existing tools.
Ali Avci
Reshift's Javascript support has been a valuable aid to me when writing secure code for critical application features. Thank you for making this available to us!
Sherif Koussa
@aliavci Appreciate your support :)
Olivia Harris
@aliavci Thanks so much Ali! We're happy to help development teams and grateful to work with people like you :)
Garth Boyd
An incredibly important tool to help developers create and learn about producing secure code from a dedicated team who can make it happen.
Sherif Koussa
@garth_boyd Thank you very much :)
Olivia Harris
@garth_boyd Thank you Garth, it means a lot hearing that from you!
1234
Next
Last