Mayhem Software Security for
Government & Defense

Modern defense is enabled by automation and connectivity, making them more vulnerable to attacks. From 2012 to 2017, the Department of Defense found vulnerabilities in nearly all weapons systems that were under development. A report revealed only 1 of 20 cyber vulnerabilities identified in a previous assessment had been corrected.*
*According to GAO’s Oct. 2018 DOD Just Beginning to Grapple with Scale of Vulnerabilities.

Solution Brief

US Fighter Jet Carnegie Mellon University’s Software Engineering Institute found the average code developed in the United States has 6,000 defects per million lines of code. Of those defects, 1 to 5 percent of defects are considered vulnerabilities. A fighter jet estimated to have 24M lines of code is projected to have 144,000 defects, of which 1,440 - 7,200 are vulnerabilities.
US Fighter Jet US Fighter Jet

Carnegie Mellon University’s Software Engineering Institute found the average code developed in the United States has 6,000 defects per million lines of code. Of those defects, 1 to 5 percent of defects are considered vulnerabilities. A fighter jet estimated to have 24M lines of code is projected to have 144,000 defects, of which 1,440 - 7,200 are vulnerabilities.

Securing Software is a Multifaceted Challenge

Development Testing Source analysis produces high false-positives, wasting scarce technical expertise on defect validating and triaging.
Operational Testing Most dynamic analysis tools are designed for web apps and not suited for systems software written for critical infrastructure, platforms or devices.
Develop Vulnerability
Discovery

Introducing ForAllSecure Mayhem...

Insecure or unstable software can be a matter of life and death. ForAllSecure Mayhem is an assisted intelligence security solution that automatically uncovers software defects. With less time, cost, and resources, Mayhem finds deep defects that are frequently missed by other application security testing techniques.

Solution Brief

Spend More Time Developing Innovative Software.

Mayhem’s testing is accurate and precise, uncovering defects with zero false-positives. Detailed and actionable results facilitate efficient remediation. With Mayhem, development teams remain focused on what they do best: code.

Mayhem

Scale Security Testing with Assisted Intelligence.

Mayhem’s patented technology from a decade of research at Carnegie Mellon University analyzes target feedback to generate test cases on-the-fly. Scale scarce security resources and allow them to focus on strategic initiatives that require technical expertise.

Mayhem

Advanced Testing Techniques with a Proven Track Record.

As Mayhem acquires knowledge over its targets, it deepens its analysis and expands its code coverage. Explore unknown or uncommon attack patterns, commonly leveraged by adversaries, to uncover deep defects.

Mayhem

Command Control Over Your Software Supply Chain.

Mayhem offers greater control and flexibility for operational testing. Stop inheriting risk from your software supply chain.

Mayhem

Trusted Partner to the Defense Innovation Unit

Gov

After taking first place in the 2016 DARPA Cyber Grand Challenge, ForAllSecure was awarded a $8M contract by the Defense Innovation Unit (DIU), a startup-centric office within the Pentagon. DIU welcomes Department of Defense subsidiaries to join their Mayhem pilot program.

Join Now