
| URLs | |
| CERT Coding Standards | https://www.securecoding.cert.org |
| OWASP Code Review Guide | https://www.owasp.org/index.php/Category:OWASP_Code_Review_Project |
| Agnitio | http://sourceforge.net/projects/agnitiotool/ |
| CERT Rosecheckers | http://sourceforge.net/projects/rosecheckers/ |
| Yasca | http://scovetta.github.io/yasca/ |
| VCG | http://sourceforge.net/projects/visualcodegrepp/ |
| phpcs-security-audit | https://github.com/FloeDesignTechnologies/phpcs-security-audit |
| RIPS | http://sourceforge.net/projects/rips-scanner/ |
| Flawfinder | http://www.dwheeler.com/flawfinder/ |
| Dawn | https://github.com/thesp0nge/dawnscanner |
| Brakeman | http://brakemanscanner.org/ |