Report: Most Enterprise Apps Fail Security Checks
As if IT admins didn't already have enough on their often underpaid plates, buggy code is shaping up to be a bigger problem than ever. According to a report by Veracode, third-party software fails security tests over 80 percent of the time. What's more, 57 percent of all apps contained security flaws, Veracode claims.
"We're still finding that a lot of work needs to be done in software security. Still over hall of all [apps] are failing acceptable levels of security in their first [testing]," says Sam King, vice president of product marketing for Veracode.
Veracode assessed 2,922 applications over the last 18 months and presented their findings in their "State of Software Security Report" released on Wednesday. Here's a rundown of some of what they found:
- Cross-site Scripting remains the most prevalent of all vulnerabilities
- Developers are quick to repair security holes
- Cloud/Web applications were the most requested third-party assessments
The full report is available here (PDF).