Software Assurance & Certification Tools for Defense UAVs & Autonomous Systems
CodeSonar® Static analysis for secure & safety-critical software development
CodeSonar®

Static analysis for secure & safety-critical software development

Visit Website Contact
Saved
Save
CodeSonar®

CodeSonar® examines C and C++ code through whole-program semantic reasoning, abstract interpretation, symbolic execution, and path-aware modeling. It detects security weaknesses, quality defects, data-flow problems, tainted-input paths, memory faults, and cross-module issues before runtime testing. Coverage extends from established C89 and C++98 environments through newer C26 and C++26 features, with support for widely used compilers and rule sets such as MISRA, CERT, AUTOSAR C++, CWE, JSF++, OWASP, and DISA STIG.

The platform also evaluates Java, C#, Go, Python, Rust, Kotlin, JavaScript, TypeScript, compiled executables, and mixed-language projects. Results can appear within developer IDEs and CI/CD pipelines, while the CodeSonar Hub preserves findings across builds, supports assignment and review, and visualizes call trees and execution paths. Parallel builds, distributed analysis, SARIF exchange, and integrations with tools including Visual Studio, VS Code, GitLab, Jira, and Jenkins help engineering teams incorporate software assurance into existing workflows for embedded, unmanned, and defense systems.

Advancing Unmanned Systems Through Strategic Collaboration UST works with major OEMs to foster collaboration and increase engagement with SMEs, to accelerate innovation and drive unmanned systems capabilities forward.