While businesses are beginning to take note of the importance of information security within their networks, a new poll suggests they may not be taking the same approach to new applications. A study of 9,910 applications submitted to Veracode's cloud-based application testing platform in the past 18 months found that eight out of ten did not have the acceptable level of security. Most of the security weaknesses were found in web applications, with 68 per cent of vulnerabilities found in cross-site-scripting and 32 per cent in SQL injection. Furthermore, the report found that government web applications are less resilient to common attack than other sectors. "Given this threat environment, organisations should implement stricter security policies that allow for the discovery and timely remediation of these vulnerability types," said Chris Wysopal, founder, chief information security officer and chief technology officer at Veracode. Graeme Batsman, director of Data Defender, urged businesses in the UK to do more to protect security, including introducing a layered approach. Looking for information security jobs? Find the latest roles with Barclay Simpson, leaders in information security recruitment
|