<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Synopsys &#8211; UseManuals</title>
	<atom:link href="http://usemanuals.com/synopsys/feed/" rel="self" type="application/rss+xml" />
	<link>https://usemanuals.com</link>
	<description>Owner&#039;s manuals for all sorts of products</description>
	<lastBuildDate>Fri, 23 Jun 2023 09:34:02 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.7.2</generator>

<image>
	<url>https://usemanuals.com/wp-content/uploads/2025/02/favicon-32x32-2.png</url>
	<title>Synopsys &#8211; UseManuals</title>
	<link>https://usemanuals.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Black Duck Software Composition Analysis Manual</title>
		<link>https://usemanuals.com/synopsys/black-duck-analysis/</link>
		
		<dc:creator><![CDATA[ItsManual]]></dc:creator>
		<pubDate>Fri, 23 Jun 2023 09:34:02 +0000</pubDate>
				<category><![CDATA[Synopsys]]></category>
		<guid isPermaLink="false">https://usemanuals.com/?p=114795</guid>

					<description><![CDATA[&#160; Black Duck Software Composition Analysis Black Duck is a comprehensive solution for managing security, license compliance, and code quality risks that come from the use of open source in applications and containers. Named a leader in software composition analysis (SCA) by Forrester, Black Duck gives you unmatched visibility into third-party code, enabling you to control it across your software supply chain and throughout the application life cycle. Only Black Duck combines versatile open source risk management with deep binary inspection to provide a best-in-class SCA solution that helps you minimize risks associated with open source and other third-party software. In a time when , Black Duck empowers your development, operations, procurement, and security teams to: Find and fix security vulnerabilities at each stage in the SDLC, with detailed, vulnerability-specific remediation guidance and technical insight. Eliminate risk of open source license noncompliance and safeguard your intellectual property by using the industry’s largest open source knowledge base to identify which of 2,650 licenses are relevant to the open source in your applications (including code snippets from larger components). Avoid development cost overruns and combat code decay with operational risk metrics associated with poor open source code quality. Scan virtually any software, firmware, and source code to generate a comprehensive bill of materials (BOM) of what’s inside. Automatically monitor for new vulnerabilities that affect your BOM, with custom policies and workflow triggers to accelerate remediation and reduce your risk exposure. 1 Identify open source in code, binaries, and containers. Detect partial and modified components. Automate scanning with DevOps integrations. Map components to known vulnerabilities. Identify license and component quality risks. Monitor for new vulnerabilities in development and production. Set and enforce open source use and security policies. Automate policy enforcement with DevOps integrations. Prioritize and track remediation activities. Black Duck identifies more open source, with greater accuracy, using a unique multifactor detection technology to generate and validate a complete BOM to track declared components, unique file hash signatures, dependencies resolved during a build, and open source code snippets. Black Duck’s intelligent scan client integrates with development tools used throughout the SDLC and automatically detects resources to optimize its scan methodology. Black Duck’s open source security risk insight combines curated data from public sources (e.g., NVD) and detailed, proprietary analysis from the Synopsys Cybersecurity Research Center (CyRC). Get notified of new vulnerabilities weeks before they are published in the NVD (reducing your window of exposure), and benefit from our exclusive enhanced vulnerability data and Black Duck Security Advisories (BDSAs), including: Critical risk metrics, vulnerability-specific technical insight, exploit details, and impact analysis CVSS 2 and CVSS 3 scoring and CWE classification data Common Attack Pattern Enumeration and Classification (CAPEC) Temporal scoring not provided by the NVD Component-level upgrade and remediation guidance, mitigating factors, and compensating controls Vulnerability impact analysis to determine if the vulnerable code is being called by the application Custom vulnerability risk scoring to match your company risk profile Vulnerabilities are prioritized for remediation across multiple critical data points, including severity, solution availability, exploitability, CWE, and reachability Configure your open source security and use policies based on a comprehensive array of criteria, including license type, vulnerability severity, open source component version, and more. Enforce policies with automatic workflow triggers, notifications, and bidirectional Jira integration for accelerated remediation initiation and reporting. With Black Duck in your toolkit, you can quickly and easily analyze vendor-supplied binaries to identify weak links in your software supply chain without access to the source code. Get deep, actionable risk metrics to make informed decisions about your use and procurement of technologies before they put you at risk. Black Duck’s intelligent scan client automatically determines if the target software is source or a compiled binary, then identifies and catalogs all third-party software components, associated licenses, and known vulnerabilities affecting your applications. 2 Languages C C++ C# Clojure Erlang Golang Groovy Java JavaScript Kotlin Node.js Objective-C Perl Python PHP R Ruby Scala Swift .NET Cloud technologies Package Managers NuGet Hex Vndr Godep Dep Maven Gradle Npm CocoaPods Cpanm Conda Pear Composer Pip Packrat RubyGems SBT BDBA Package Manager Support Distro-package-manager: Leverages information from a Linux distribution package manager database to extract component information. The remaining four methods are only applicable to Java bytecode: –pom: Extracts the Java package, group name, and version from the pom.xml or pom.properties files in a JAR file. –manifest: extracts the Java package name and version from the entries in the MANIFEST.MF file in a JAR file. –jar-filename: Extracts the Java package name and version from the jar-filename. –hashsum: Uses the sha1 checksum of the JAR file to look it up from known Maven Central registered Java projects. Binary formats Native binaries Java binaries .NET binaries Go binaries Compression formats Gzip (.gz) bzip2 (.bz2) LZMA (.lz) LZ4 (.lz4) Compress (.Z) XZ (.xz) Pack200 (.jar) UPX (.exe) Snappy DEFLATE zStandard (.zst) Archive formats ZIP (.zip, .jar, .apk, and other derivatives) XAR (.xar) 7-Zip (.7z) ARJ (.arj) TAR (.tar) VM TAR (.tar) cpio (.cpio) RAR (.rar) LZH (.lzh) Electron archive (.asar) DUMP Installation formats Red Hat RPM (.rpm) Debian package (.deb) Mac installers (.dmg, .pkg) Unix shell file installers (.sh, .bin) Windows installers (.exe, .msi, .cab) vSphere Installation Bundle (.vib) Bitrock Installer Installer generator formats that are supported: –7z, zip, rar self extracting .exe –MSI Installer –CAB Installer –InstallAnywhere –Install4J –InstallShield –InnoSetup –Wise Installer –Nullsoft Scriptable Install System (NSIS) –WiX Installer Firmware formats Intel HEX SREC U-Boot Arris firmware Juniper firmware Kosmos firmware Android sparse file system Cisco firmware File systems / disk images ISO 9660 / UDF (.iso) Windows Imaging ext2/3/4 JFFS2 UBIFS RomFS Microsoft Disk Image Macintosh HFS VMware VMDK (.vmdk, .ova) QEMU Copy-On-Write (.qcow2) VirtualBox VDI (.vdi) QNX—EFS, IFS NetBoot image (.nbi) FreeBSD UFS Container Formats Docker Black Duck only BDBA only 3 Cloud platforms Amazon Web Services Google Cloud Platform Microsoft Azure Container platforms Docker OpenShift Pivotal Cloud Foundry Kubernetes Package managers PostgreSQL IDEs Eclipse Visual Studio IDE Continuous integration Jenkins TeamCity Bamboo Team Foundation Server Travis CI CircleCI GitLab CI Visual Studio Team Services Concourse CI AWS CodeBuild Codeship Workflow and notifications Jira Slack Email SPDX Binary and source repositories Artifactory Nexus Application security suites IBM AppScan Micro Focus Fortify SonarQube ThreadFix Cybric Code Dx Synopsys helps development teams build secure, high-quality software, minimizing risks while maximizing speed and productivity. Synopsys, a recognized leader in application security, provides static analysis, software composition analysis, and dynamic analysis solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source components, and application behavior.For more information about the Synopsys Software Integrity Group, visit us online atSynopsys, Inc.185 Berry Street, Suite 6500San Francisco, CA 94107 USAU.S. Sales: 800.873.8193International Sales: +1 415.321.5237Email: ©2020 Synopsys, Inc. All rights reserved. Synopsys is a trademark of Synopsys, Inc. in the United States and other countries. A list of Synopsys trademarks is available at . All other names mentioned herein are trademarks or registered trademarks of their respective owners. [...]<p><a class="btn btn-secondary understrap-read-more-link" href="https://usemanuals.com/synopsys/black-duck-analysis/">Read More...</a></p>]]></description>
										<content:encoded><![CDATA[<p>&nbsp;</p>
<h3>Black Duck</h3>
<h4>Software Composition Analysis</h4>
<h5></h5>
<p>Black Duck is a comprehensive solution for managing security, license compliance, and code quality risks that come from the use of open source in applications and containers. Named a leader in software composition analysis (SCA) by Forrester, Black Duck gives you unmatched visibility into third-party code, enabling you to control it across your software supply chain and throughout the application life cycle.</p>
<h5></h5>
<p>Only Black Duck combines versatile open source risk management with deep binary inspection to provide a best-in-class SCA solution that helps you minimize risks associated with open source and other third-party software. In a time when , Black Duck empowers your development, operations, procurement, and security teams to:</p>
<ul>
<li class="textLayer"><strong>Find and fix security vulnerabilities</strong> at each stage in the SDLC, with detailed, vulnerability-specific remediation guidance and technical insight.</li>
<li class="textLayer"><strong>Eliminate risk of open source license noncompliance</strong> and safeguard your intellectual property by using the industry’s largest open source knowledge base to identify which of 2,650 licenses are relevant to the open source in your applications (including code snippets from larger components).</li>
<li class="textLayer"><strong>Avoid development cost overruns and combat code decay</strong> with operational risk metrics associated with poor open source code quality.</li>
<li class="textLayer"><strong>Scan virtually any software, firmware, and source code</strong> to generate a comprehensive bill of materials (BOM) of what’s inside.</li>
<li class="textLayer"><strong>Automatically monitor for new vulnerabilities</strong> that affect your BOM, with custom policies and workflow triggers to accelerate remediation and reduce your risk exposure.<img decoding="async" class="alignnone size-medium wp-image-54060 ezlazyloaded" src="images/6.webp" sizes="" srcset="" alt="Synopsys social media" width="300" height="35" data-ezsrcset="https://manuals.plus/wp-content/uploads/2021/01/Synopsys-social-media-300x35.png?ezimgfmt=ng:webp/ngcb1 300w,https://manuals.plus/wp-content/uploads/2021/01/Synopsys-social-media.png?ezimgfmt=ng:webp/ngcb1 473w" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Synopsys-social-media-300x35.png?ezimgfmt=rs:300x35/rscb1/ng:webp/ngcb1" /> 1</li>
</ul>
<ul>
<li class="textLayer"><strong>Identify</strong> open source in code, binaries, and containers.</li>
<li class="textLayer"><strong>Detect</strong> partial and modified components.</li>
<li class="textLayer"><strong>Automate</strong> scanning with DevOps integrations.</li>
</ul>
<ul>
<li class="textLayer"><strong>Map</strong> components to known vulnerabilities.</li>
<li class="textLayer"><strong>Identify</strong> license and component quality risks.</li>
<li class="textLayer"><strong>Monitor</strong> for new vulnerabilities in development and production.</li>
</ul>
<ul>
<li class="textLayer"><strong>Set and enforce</strong> open source use and security policies.</li>
<li class="textLayer"><strong>Automate</strong> policy enforcement with DevOps integrations.</li>
<li class="textLayer"><strong>Prioritize and track</strong> remediation activities.</li>
</ul>
<p>Black Duck identifies more open source, with greater accuracy, using a unique multifactor detection technology to generate and validate a complete BOM to track declared components, unique file hash signatures, dependencies resolved during a build, and open source code snippets. Black Duck’s intelligent scan client integrates with development tools used throughout the SDLC and automatically detects resources to optimize its scan methodology.</p>
<p>Black Duck’s open source security risk insight combines curated data from public sources (e.g., NVD) and detailed, proprietary analysis from the Synopsys Cybersecurity Research Center (CyRC). Get notified of new vulnerabilities weeks before they are published in the NVD (reducing your window of exposure), and benefit from our exclusive enhanced vulnerability data and Black Duck Security Advisories (BDSAs), including:</p>
<ul>
<li>Critical risk metrics, vulnerability-specific technical insight, exploit details, and impact analysis</li>
<li>CVSS 2 and CVSS 3 scoring and CWE classification data</li>
<li>Common Attack Pattern Enumeration and Classification (CAPEC)</li>
<li>Temporal scoring not provided by the NVD</li>
<li>Component-level upgrade and remediation guidance, mitigating factors, and compensating controls</li>
<li>Vulnerability impact analysis to determine if the vulnerable code is being called by the application</li>
<li>Custom vulnerability risk scoring to match your company risk profile</li>
<li>Vulnerabilities are prioritized for remediation across multiple critical data points, including severity, solution availability, exploitability, CWE, and reachability</li>
</ul>
<p>Configure your open source security and use policies based on a comprehensive array of criteria, including license type, vulnerability severity, open source component version, and more. Enforce policies with automatic workflow triggers, notifications, and bidirectional Jira integration for accelerated remediation initiation and reporting.</p>
<p>With Black Duck in your toolkit, you can quickly and easily analyze vendor-supplied binaries to identify weak links in your software supply chain without access to the source code. Get deep, actionable risk metrics to make informed decisions about your use and procurement of technologies before they put you at risk. Black Duck’s intelligent scan client automatically determines if the target software is source or a compiled binary, then identifies and catalogs all third-party software components, associated licenses, and known vulnerabilities affecting your applications.</p>
<p><img decoding="async" class="alignnone size-medium wp-image-54060 ezlazyloaded" src="images/6.webp" sizes="" srcset="" alt="Synopsys social media" width="300" height="35" data-ezsrcset="https://manuals.plus/wp-content/uploads/2021/01/Synopsys-social-media-300x35.png?ezimgfmt=ng:webp/ngcb1 300w,https://manuals.plus/wp-content/uploads/2021/01/Synopsys-social-media.png?ezimgfmt=ng:webp/ngcb1 473w" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Synopsys-social-media-300x35.png?ezimgfmt=rs:300x35/rscb1/ng:webp/ngcb1" /> 2</p>
<p>Languages</p>
<ul>
<li>C</li>
<li>C++</li>
<li>C#</li>
<li>Clojure</li>
<li>Erlang <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Golang</li>
<li>Groovy</li>
<li>Java</li>
<li>JavaScript <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Kotlin</li>
<li>Node.js <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Objective-C</li>
<li>Perl <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Python <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>PHP <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>R <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Ruby</li>
<li>Scala</li>
<li>Swift <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>.NET Cloud technologies</li>
</ul>
<p>Package Managers</p>
<ul>
<li>NuGet <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Hex <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Vndr <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Godep <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Dep <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Maven <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Gradle <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Npm <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>CocoaPods <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Cpanm <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Conda <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Pear <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Composer <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Pip <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>Packrat <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>RubyGems <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
<li>SBT <img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /></li>
</ul>
<p>BDBA Package Manager Support</p>
<ul>
<li>Distro-package-manager: Leverages information from a Linux distribution package manager database to extract component information.</li>
<li>The remaining four methods are only applicable to Java bytecode:</li>
</ul>
<p>–pom: Extracts the Java package, group name, and version from the pom.xml or pom.properties files in a JAR file.</p>
<p>–manifest: extracts the Java package name and version from the entries in the MANIFEST.MF file in a JAR file.</p>
<p>–jar-filename: Extracts the Java package name and version from the jar-filename.</p>
<p>–hashsum: Uses the sha1 checksum of the JAR file to look it up from known Maven Central registered Java projects.</p>
<p>Binary formats</p>
<ul>
<li>Native binaries</li>
<li>Java binaries</li>
<li>.NET binaries</li>
<li>Go binaries</li>
</ul>
<p>Compression formats</p>
<ul>
<li>Gzip (.gz)</li>
<li>bzip2 (.bz2)</li>
<li>LZMA (.lz)</li>
<li>LZ4 (.lz4) <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>Compress (.Z)</li>
<li>XZ (.xz)</li>
<li>Pack200 (.jar)</li>
<li>UPX (.exe)</li>
<li>Snappy</li>
<li>DEFLATE</li>
<li>zStandard (.zst) <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
</ul>
<p>Archive formats</p>
<ul>
<li>ZIP (.zip, .jar, .apk, and other derivatives)</li>
<li>XAR (.xar) <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>7-Zip (.7z)</li>
<li>ARJ (.arj)</li>
<li>TAR (.tar)</li>
<li>VM TAR (.tar) <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>cpio (.cpio)</li>
<li>RAR (.rar)</li>
<li>LZH (.lzh) <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>Electron archive (.asar) <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>DUMP</li>
</ul>
<p>Installation formats</p>
<ul>
<li>Red Hat RPM (.rpm)</li>
<li>Debian package (.deb)</li>
<li>Mac installers (.dmg, .pkg)</li>
<li>Unix shell file installers (.sh, .bin)</li>
<li>Windows installers (.exe, .msi, .cab)</li>
<li>vSphere Installation Bundle (.vib) <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>Bitrock Installer <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>Installer generator formats that are supported:</li>
</ul>
<p>–7z, zip, rar self extracting .exe <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></p>
<p>–MSI Installer <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></p>
<p>–CAB Installer <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></p>
<p>–InstallAnywhere <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></p>
<p>–Install4J <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></p>
<p>–InstallShield <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></p>
<p>–InnoSetup <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></p>
<p>–Wise Installer <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></p>
<p>–Nullsoft Scriptable Install System (NSIS) <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></p>
<p>–WiX Installer <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></p>
<p>Firmware formats</p>
<ul>
<li>Intel HEX <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>SREC <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>U-Boot <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>Arris firmware <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>Juniper firmware <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>Kosmos firmware <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>Android sparse file system <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>Cisco firmware <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
</ul>
<p>File systems / disk images</p>
<ul>
<li>ISO 9660 / UDF (.iso) <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>Windows Imaging <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>ext2/3/4 <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>JFFS2 <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>UBIFS <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>RomFS <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>Microsoft Disk Image <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>Macintosh HFS <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>VMware VMDK (.vmdk, .ova) <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>QEMU Copy-On-Write (.qcow2) <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>VirtualBox VDI (.vdi) <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>QNX—EFS, IFS <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>NetBoot image (.nbi) <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
<li>FreeBSD UFS <img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /></li>
</ul>
<p>Container Formats</p>
<ul>
<li>Docker</li>
</ul>
<p><img decoding="async" class="alignnone wp-image-54058 ezlazyloaded" src="images/7.webp" alt="Mark box" width="15" height="16" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-box.png?ezimgfmt=rs:15x16/rscb1/ng:webp/ngcb1" /> Black Duck only</p>
<p><img decoding="async" class="alignnone wp-image-54059 ezlazyloaded" src="images/8.webp" alt="Mark circle" width="21" height="20" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Mark-circle.png?ezimgfmt=rs:21x20/rscb1/ng:webp/ngcb1" /> BDBA only</p>
<p><img decoding="async" class="alignnone size-medium wp-image-54060 ezlazyloaded" src="images/6.webp" sizes="" srcset="" alt="Synopsys social media" width="300" height="35" data-ezsrcset="https://manuals.plus/wp-content/uploads/2021/01/Synopsys-social-media-300x35.png?ezimgfmt=ng:webp/ngcb1 300w,https://manuals.plus/wp-content/uploads/2021/01/Synopsys-social-media.png?ezimgfmt=ng:webp/ngcb1 473w" data-ezsrc="https://manuals.plus/wp-content/uploads/2021/01/Synopsys-social-media-300x35.png?ezimgfmt=rs:300x35/rscb1/ng:webp/ngcb1" /> 3</p>
<h5></h5>
<p><strong>Cloud platforms</strong></p>
<ul>
<li>Amazon Web Services</li>
<li>Google Cloud Platform</li>
<li>Microsoft Azure</li>
</ul>
<p><strong>Container platforms</strong></p>
<ul>
<li>Docker</li>
<li>OpenShift</li>
<li>Pivotal Cloud Foundry</li>
<li>Kubernetes Package managers</li>
</ul>
<ul>
<li>PostgreSQL</li>
</ul>
<p><strong>IDEs</strong></p>
<ul>
<li class="textLayer">Eclipse</li>
<li class="textLayer">Visual Studio IDE</li>
</ul>
<p><strong>Continuous integration</strong></p>
<ul>
<li class="textLayer">Jenkins</li>
<li class="textLayer">TeamCity</li>
<li class="textLayer">Bamboo</li>
<li class="textLayer">Team Foundation Server</li>
<li class="textLayer">Travis CI</li>
<li class="textLayer">CircleCI</li>
<li class="textLayer">GitLab CI</li>
<li class="textLayer">Visual Studio Team Services</li>
<li class="textLayer">Concourse CI</li>
<li class="textLayer">AWS CodeBuild</li>
<li class="textLayer">Codeship</li>
</ul>
<p><strong>Workflow and notifications</strong></p>
<ul>
<li class="textLayer">Jira</li>
<li class="textLayer">Slack</li>
<li class="textLayer">Email</li>
<li class="textLayer">SPDX</li>
</ul>
<p><strong>Binary and source repositories</strong></p>
<ul>
<li class="textLayer">Artifactory</li>
<li class="textLayer">Nexus</li>
</ul>
<p><strong>Application security suites</strong></p>
<ul>
<li class="textLayer">IBM AppScan</li>
<li class="textLayer">Micro Focus Fortify</li>
<li class="textLayer">SonarQube</li>
<li class="textLayer">ThreadFix</li>
<li class="textLayer">Cybric</li>
<li class="textLayer">Code Dx</li>
</ul>
<p>Synopsys helps development teams build secure, high-quality software, minimizing risks while maximizing speed and productivity. Synopsys, a recognized leader in application security, provides static analysis, software composition analysis, and dynamic analysis solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source components, and application behavior.For more information about the Synopsys Software Integrity Group, visit us online at<strong>Synopsys, Inc.</strong>185 Berry Street, Suite 6500San Francisco, CA 94107 USAU.S. Sales: 800.873.8193International Sales: +1 415.321.5237Email: ©2020 Synopsys, Inc. All rights reserved. Synopsys is a trademark of Synopsys, Inc. in the United States and other countries. A list of Synopsys trademarks is available at . All other names mentioned herein are trademarks or registered trademarks of their respective owners.</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Page Caching using Disk: Enhanced 

Served from: usemanuals.com @ 2026-08-29 23:22:31 by W3 Total Cache
-->