Application Details: More Info tab
The More Info tab provides additional insights into the application's security posture and findings. Use this tab to review findings by attack technique, monitor issue trends, and analyze issue statistics.

OSC&R
The OSC&R section organizes application findings according to the Open Source Cybersecurity Reference (OSC&R) framework.
Findings are grouped by attack tactic, making it easier to understand how vulnerabilities relate to different stages of the software supply chain attack lifecycle.
Each tactic displays:
The number of techniques for which findings were identified.
The OSC&R techniques associated with the application.
The number of findings for each severity level within each technique.
Select a technique to view the related findings.
Issue Trends
The Issue Trends chart shows how the number of issues has changed over time.
The chart displays issues by severity, allowing you to identify trends such as:
Increasing or decreasing numbers of findings.
Changes in the application's overall security posture.
The impact of remediation efforts over time.
Use this chart to monitor the application's security progress across successive scans.
Issue Statistics
The Issue Statistics section summarizes the application's findings from multiple perspectives.
Each widget groups findings by a different attribute.
The available widgets include:
Category
Distribution of findings by security category, such as Code Security, Open Source Security, or Container Security.
Severity
Distribution of findings by severity level.
Issue Owner
Distribution of findings by the assigned issue owner.
Source Tool
Distribution of findings by the OX scanning capability or integrated source that identified them.
Select a value within a widget to further analyze the corresponding findings.
Last updated
