Nytro Posted January 5, 2015 Report Posted January 5, 2015 Designed to be simple and easy to use, FlawFinder reports well-known security issues in applications written in C, sorted by risk level. Developed by open-source and secure software expert David Wheeler, the tool itself is written in Python and uses a command line interface. FlawFinder is officially CWE compatible.The Good: Ability to check only the changes made to code for faster, more accurate results Long history, released in 2001 with consistent updatesThe Not-As-Good: A number of false positives Requires Python 1.5Sursa: Flawfinder Home Page Quote