Industry Insights

Bright Introduces Bright STAR: The Future of Application Security Testing

In the ever-evolving landscape of application security, Bright is excited  to introduce Bright’s STAR (Security Testing & Automated Remediation) platform.  STAR is a revolutionary approach that disrupts traditional AST (Application Security Testing) concepts and ushers in a new era of Application and API Security solutions. . Bright has been deploying Developer-centric DAST (Dynamic Application Security […]

Bright Introduces Bright STAR: The Future of Application Security Testing
Bar Hofesh Co-founder of Bright Security, Bar acts at their CTO. Globally recognized security & technology expert, Bar has played many roles including CISO, System architect , Security, and DevSecOps advisor at over 10 companies. As a leader & researcher, he has multiple publications & projects in cybersecurity. CISO & MCITP certified.
February 11, 2025
3 minutes

In the ever-evolving landscape of application security, Bright is excited  to introduce Bright’s STAR (Security Testing & Automated Remediation) platform.  STAR is a revolutionary approach that disrupts traditional AST (Application Security Testing) concepts and ushers in a new era of Application and API Security solutions. . Bright has been deploying Developer-centric DAST (Dynamic Application Security Testing) solutions to some of the world’s largest enterprises for the past 5 years. The new STAR platform incorporates many of the capabilities needed by our customers and other organizations we speak with to enable them to take a modern approach to Application and API Security by focusing on automation, testing early in the SDLC and driving automated remediation. With the introduction of this new solution  Bright is breaking down barriers between SAST (Static Application Security Testing), DAST, and IAST (Interactive Application Security Testing), offering a truly revolutionary solution to the industry which doesn’t only test, but also helps enterprises auto-remediate vulnerabilities.

Table of Content

  1. The Power of STAR: Redefining Application Security
  2. Broad Language Support for Maximum Adoption
  3. Dynamic Security Testing at the Code Level
  4. A New Era in Application Security

The Power of STAR: Redefining Application Security

STAR reimagines Application and API security by leveraging Bright’s advanced Dynamic engine and seamlessly integrating AI capabilities with Bright’s SecTester security unit testing library. This powerful combination enables STAR to:

  • Automatically generate security unit test coverage (SecTester) for a given codebase.
  • Run security unit tests to identify vulnerabilities dynamically by developers early in the SDLC.
  • Automatically generate fixes for discovered vulnerabilities using AI-driven insights.
  • Validate those fixes in real time using the same SecTester unit tests ensuring remediation is both effective and seamless. Based on our Dynamic platform Bright is uniquely positioned to provide real validation.

Broad Language Support for Maximum Adoption

Bright’s STAR platform is designed with developers in mind, supporting multiple programming languages, including Go, JavaScript, TypeScript, .NET, and others. This broad compatibility allows organizations across the globe to integrate STAR into their development workflows effortlessly, ensuring security is embedded early in the development lifecycle. Due to our dynamic approach we are able to rapidly add support for additional languages without needing full language integration required by SAST solutions. 

Dynamic Security Testing at the Code Level

Yes, you read that correctly!

Unlike traditional SAST solutions that rely on static analysis and approximations, STAR brings dynamic security testing directly to the unit-testing and code level. This eliminates guesswork and false positives while avoiding the complexities of DAST, such as authentication challenges and full application discovery processes. By merging dynamic testing with unit testing, STAR delivers an unprecedented level of accuracy and efficiency in security validation.

A New Era in Application Security

With STAR, Bright is redefining the standards of Application Security by offering a developer-friendly, automated, and AI-powered security testing solution. This next-generation approach empowers development teams to detect and remediate vulnerabilities faster, with minimal friction, ultimately leading to more secure applications and APIs and a stronger security posture for organizations worldwide.

Bright’s STAR is not just an evolution, it’s a revolution in application security! Stay ahead of the curve with Bright and experience the future of AppSec today.

What Our Customers Say About Us

"Empowering our developers with Bright Security's DAST has been pivotal at SentinelOne. It's not just about protecting systems; it's about instilling a culture where security is an integral part of development, driving innovation and efficiency."

Kunal Bhattacharya | Head of Application Security

"Bright DAST has transformed how we approach AST at SXI, Inc. Its seamless CI/CD
integration, advanced scanning, and actionable insights empower us to catch
vulnerabilities early, saving time and costs. It's a game-changer for organizations aiming to
enhance their security posture and reduce remediation costs."

Carlo M. Camerino | Chief Technology Officer

"Bright Security has helped us shift left by automating AppSec scans and regression testing early in development while also fostering better collaboration between R&D teams and raising overall security posture and awareness. Their support has been consistently fast and helpful."

Amit Blum | Security team lead

"Bright Security enabled us to significantly improve our application security coverage and remediate vulnerabilities much faster. Bright Security has reduced the amount of wall clock hours AND man hours we used to spend doing preliminary scans on applications by about 70%."

Alex Brown

"Duis aute irure dolor in reprehenderit in voluptate velit esse."

Bobby Kuzma | ProCircular

"Since implementing Bright's DAST scanner, we have markedly improved the efficiency of our runtime scanning. Despite increasing the cadence of application testing, we've noticed no impact to application stability using the tool. Additionally, the level of customer support has been second to none. They have been committed to ensuring our experience with the product has been valuable and have diligently worked with us to resolve any issues and questions."

AppSec Leader | Prominent Midwestern Bank

Book a Demo

See how Bright validates real risk inside your CI/CD pipeline and eliminates false positives before they reach developers.

Our clients:
SulAmerica Barracuda SentinelOne MetLife Nielsen Heritage Bank Versant Health