Codebashing vs Veracode Security Labs comparison

Cancel
You must select at least 2 products to compare!
Checkmarx Logo
703 views|233 comparisons
85% willing to recommend
Veracode Logo
846 views|201 comparisons
100% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Codebashing and Veracode Security Labs based on real PeerSpot user reviews.

Find out in this report how the two Application Security Training solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Codebashing vs. Veracode Security Labs Report (Updated: May 2024).
771,212 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"From an academic point of view, Codebashing is a very good product because it is based on gamification. This is especially true if you don't have any idea about secure code training. It is one of the best tools in the world to learn secure coding. The product explains very well how vulnerabilities can be found and how programmers can develop securely.""The most important aspect of Codebashing, in my opinion, is the gamification advantage. When compared to competitors' offerings, the most significant thing to emphasize is gamification. The rest is similar to the competitors.""The platform is simple, easy to use, and easy to learn.""The most valuable feature is the integration with WhiteSource, which allows for open-source scanning.""According to the feedback, it's an easy-to-use application tool.""This solution has an interactive approach that allows you to quickly receive basic knowledge about vulnerabilities and how they should be fixed.""There's a lot of flexibility and there are a lot of configuration options.""The most valuable feature is that you get the security from the design of the training. It ensures our developers write code securely and effectively. They will not write code that is vulnerable to hackers."

More Codebashing Pros →

"Our developers are more security-aware and are writing better code. The e-learning option allows our developers to dig deeper into the security issues. Topics such as sanitizing input, carefully configured logging output, and other typical sources of vulnerabilities.""The hands-on training has helped us to tackle modern threats by coding with vulnerabilities in mind from the beginning of a project. It has improved our process overall, and the number of vulnerabilities has been reduced.""The installation is straightforward.""The best part is that this is all within the web browser, so the developer doesn't have to install any development environments or download anything to work through the training.""It provides a complete review of vulnerabilities & possible fixes for OWASP Top 10 in one place.""I like the end-to-end learning experience. That also includes SAST. It has a low false positive rate.""The features are so extensive, which is why they are ahead of the game, and the reason I continue to use this solution.""The deployment didn't take that long."

More Veracode Security Labs Pros →

Cons
"The user interface could be updated and refreshed. It has the appearance of being very basic.""This solution could be improved by offering an increased number of quizzes after each module. The GUI for this solution could also be updated to be more modern.""I believe that certificates should be issued to users so that they can be used as proof of having completed that training. The certificate is currently not being used for any competence validation outside of the chance environment.""The product's pricing could be more flexible.""From my perspective, Codebashing might use some enhancement. Clients should be able to handle their tests directly according to their needs. That aspect of Codebashing is currently inflexible. Customers would wish to sign, compile, or manage their tests in accordance with their requirements. It is just not possible.""It would be helpful if the solution included tests or exams that would allow you to study, for example, all Java vulnerabilities, and then afterward test your knowledge.""It isn't a very friendly tool for beginners. In our company, we have to take training courses to learn how to use the platform.""If customers would be able to define their own quizzes or exams, it would be very good. That is the only missing part that I see - customer based scenarios, examinations and quizzes."

More Codebashing Cons →

"I would have liked to see a bit better auto-completion in the IDE, and there was a typo in one of the questions where the code you were supposed to copy was missing a pair of parentheses.""Its ability to handle more types of files and making it work better with databasing and other API could be improved.""It would be good if there were more assignment problems in the inventory, as well as more randomness in the coding examples.""The only area of this solution that needs improvement is the pricing for startups.""There could be better integration between the API and the pipeline systems.""There are two parts that I think should be improved. Both the web page and the report have the same issue. Both are sometimes messy and very difficult to find information. You need to know where to look and especially where to find information. It can be a bit confusing in both the report and the web page. Quite often, I keep learning new things because some of the information is quite hidden. You need to click this link, then click here, and go here. Then, "Wow," you get so much information that you didn't know existed. Information is a bit hidden and there should be an easier way to access it after a scan is generated.""Veracode Security Labs should cover more than only the OWASP Top 10.""I would like the team to make users like me aware of the new features sooner, so we can get the most from this product. Otherwise, there is no disadvantage."

More Veracode Security Labs Cons →

Pricing and Cost Advice
  • "This solution is not freeware and more expensive than similar products."
  • "Licenses are renewed annually."
  • "I would prefer it if their pricing would be a bit cheaper. This is not my personal comment, this is the comment of the market."
  • "As a developer, though I am unaware of the cost of the solution, the product is expensive since I faced some trouble upgrading to Python for Codebashing."
  • More Codebashing Pricing and Cost Advice →

  • "It's expensive. Know that going in. Your organization, your programmers, and your product will be better for it though."
  • "The pricing for qualified startups should only charge for Veracode Developer Training."
  • "They have a Community Edition of this product that can be used free of charge."
  • More Veracode Security Labs Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Application Security Training solutions are best for your needs.
    771,212 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:The platform is simple, easy to use, and easy to learn.
    Top Answer:As a developer, though I am unaware of the cost of the solution, the product is expensive since I faced some trouble upgrading to Python for Codebashing.
    Top Answer:The product's pricing could be more flexible. At present, we have to buy an entire instance. Instead, they could introduce a pricing model based on specific requirements.
    Top Answer:I like the end-to-end learning experience. That also includes SAST. It has a low false positive rate.
    Top Answer:We still use the trial version, but I feel confident that Veracode will offer competitive pricing.
    Top Answer:I would like the team to make users like me aware of the new features sooner, so we can get the most from this product. Otherwise, there is no disadvantage.
    Ranking
    Views
    703
    Comparisons
    233
    Reviews
    3
    Average Words per Review
    399
    Rating
    8.7
    Views
    846
    Comparisons
    201
    Reviews
    3
    Average Words per Review
    889
    Rating
    8.3
    Comparisons
    Also Known As
    Veracode Developer Training
    Learn More
    Overview

    Checkmarx Codebashing is an application security learning platform providing interactive secure code training for developers. Modern applications are increasingly under attack, yet many developers lack the knowledge to write code securely. Codebashing fills this gap with a gamified learning experience that covers various aspects of application security.


    Codebashing features interactive learning modules covering common security vulnerabilities like SQL injection, XSS, and cross-site request forgery. Real-world scenarios and challenges help developers apply their knowledge practically and in the relevant programming languages, while personalized learning paths cater to individual skill levels and objectives. Integration with development workflows ensures seamless adoption into existing processes.


    By improving developers’ security knowledge, Codebashing helps organizations better secure application development from the very first line of code. Benefits include improved application security posture, increased developer productivity, alignment with regulatory requirements, and the promotion of a security-first culture.

    Veracode Security Labs shifts application security knowledge left, training developers to tackle modern threats in the evolving cybersecurity landscape by exploiting and patching real code, and applying DevSecOps principles to deliver secure code on time. Through hands-on labs that use modern web apps written in your chosen languages, developers learn the skills and strategies that are directly applicable to an organization's code. With detailed progress reporting, email assignments, and a leaderboard, developers are encouraged to continuously level up their secure coding skills. When development is empowered to fix security defects and reduce risk, security teams are better supported to scale AppSec programs, meet compliance requirements, and achieve business outcomes.

    Sample Customers
    Fitbit, Microsoft, Just Eat, NCC Group, National Bank of Abu Dhabi, Sky
    McKESSON, Alfresco
    Top Industries
    VISITORS READING REVIEWS
    Computer Software Company18%
    Healthcare Company10%
    Retailer9%
    Manufacturing Company9%
    REVIEWERS
    Computer Software Company29%
    Pharma/Biotech Company14%
    Financial Services Firm14%
    Healthcare Company14%
    VISITORS READING REVIEWS
    Computer Software Company21%
    Financial Services Firm17%
    Insurance Company10%
    Comms Service Provider7%
    Company Size
    REVIEWERS
    Small Business45%
    Midsize Enterprise9%
    Large Enterprise45%
    VISITORS READING REVIEWS
    Small Business19%
    Midsize Enterprise13%
    Large Enterprise68%
    REVIEWERS
    Small Business27%
    Midsize Enterprise36%
    Large Enterprise36%
    VISITORS READING REVIEWS
    Small Business26%
    Midsize Enterprise15%
    Large Enterprise59%
    Buyer's Guide
    Codebashing vs. Veracode Security Labs
    May 2024
    Find out what your peers are saying about Codebashing vs. Veracode Security Labs and other solutions. Updated: May 2024.
    771,212 professionals have used our research since 2012.

    Codebashing is ranked 2nd in Application Security Training with 10 reviews while Veracode Security Labs is ranked 1st in Application Security Training with 10 reviews. Codebashing is rated 8.4, while Veracode Security Labs is rated 8.6. The top reviewer of Codebashing writes "An easy-to-use tool to identify false positives or flag any medium to high-risk outcomes". On the other hand, the top reviewer of Veracode Security Labs writes "We are more productive because we work smarter and optimize the reporting pathway". Codebashing is most compared with Secure Code Warrior Learning Platform, whereas Veracode Security Labs is most compared with Secure Code Warrior Learning Platform. See our Codebashing vs. Veracode Security Labs report.

    See our list of best Application Security Training vendors.

    We monitor all Application Security Training reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.