Skip to main content
RS

Require Security

This company offers automated protection for JavaScript libraries by analyzing them, securing sensitive resources, and generating a synthesized, secure replacement. Their technology reduces attack surfaces without affecting functionality, safeguarding software from potential vulnerabilities.

Boston, United States110+ followers
Updated 2 months ago

Funding

Funding not disclosed

Funding rounds are not available yet.

Founders

Product

Problem

Node.js applications are vulnerable to application-level threats stemming from third-party JavaScript libraries, with traditional security measures often relying on reactive patching and lacking real-time visibility into library behavior. Existing static analysis tools provide incomplete supply chain visibility, failing to account for dynamically loaded resources and the exploitability of vulnerabilities in the application's runtime context.

Solution

Require Security's Falcon offers automated runtime protection for Node.js applications, providing real-time alerts and blocking malicious behavior originating from third-party JavaScript libraries. The lightweight agent delivers fine-grained visibility into application library behavior, capturing all components loaded at runtime, including indirect and dynamically loaded resources. By implementing zero-trust controls for individual open-source libraries, Falcon enforces a least-privilege model, automatically identifying and blocking a majority of OWASP's Top 10 application-level security threats.

Target Audience

The primary target audience includes security teams and developers of Node.js applications who need real-time protection against application-level threats and vulnerabilities in third-party JavaScript libraries.

Features

  • Automated AI-powered runtime analysis to capture all components loaded at runtime.
  • Zero-trust controls for individual open-source libraries, enforcing a least-privilege model.
  • Automated identification and blocking of potential exploits, including OWASP Top 10 threats.
  • Exploitability analysis of CVEs within the application context.
  • Application Security Risk Scoring to prioritize critical vulnerabilities based on exploitability and criticality.
  • Visibility into the entire supply chain, including static libraries and dynamically loaded resources.
This profile is AI-generated and may contain inaccuracies.