Scott,
Unless your code runs authorized, is an SVC or a PC I don't think it can
cause vulnerabilities that threaten your system.  The system does a pretty
good job of isolating problem state code such that it will not cause
problems.

Lou
--
Artificial Intelligence is no match for Natural Stupidity
  - Unknown


On Fri, Dec 7, 2018 at 12:05 PM scott Ford <[email protected]> wrote:

> All,
>
> We write in Enterprise Cobol and HLASM and had a reseller asked us if we
> scanned our Cobol code and HLASM code for vulnerabilities ..Does software
> for this exist ?  I know according to one of our people Sonarcube can do
> Cobol scans, but is expensive , like $50000.
>
> Has anyone heard on any other software does this function and what would
> they be looking for since we dont use and third party libraries ?
>
> Best Regards,
>
> *IDMWORKS *
>
> Scott Ford
>
> z/OS Dev.
>
>
>
>
> “By elevating a friend or Collegue you elevate yourself, by demeaning a
> friend or collegue you demean yourself”
>
>
>
> www.idmworks.com
>
> [email protected]
>
> Blog: www.idmworks.com/blog
>
>
>
>
>
> *The information contained in this email message and any attachment may be
> privileged, confidential, proprietary or otherwise protected from
> disclosure. If the reader of this message is not the intended recipient,
> you are hereby notified that any dissemination, distribution, copying or
> use of this message and any attachment is strictly prohibited. If you have
> received this message in error, please notify us immediately by replying to
> the message and permanently delete it from your computer and destroy any
> printout thereof.*
>
> ----------------------------------------------------------------------
> For IBM-MAIN subscribe / signoff / archive access instructions,
> send email to [email protected] with the message: INFO IBM-MAIN
>

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [email protected] with the message: INFO IBM-MAIN

Reply via email to