I think you will see static analysis tools such as Ounce Labs and
Fortify emerge with COBOL coverage shortly. I do think it would be
intriguing for them to extend their coverage to PL1 though. Assembler
and Natural would be a waste of time as most enterprises that do have
mainframes should have upg
http://www.matasano.com/log/906/random-thoughts-on-owasp
*
This communication, including attachments, is
for the exclusive use of addressee and may contain proprietary,
confidential and/or privileged information. If you are