Spaghetti bridge

Veracode Research Finds a Quarter of Technology Applications Contain ‘High Severity’ Security Flaws, Which Pose a Serious Cybersecurity Risk If Exploited

Retrieved on: 
Thursday, December 8, 2022

Overall, the technology industry was revealed to have the second-highest proportion of applications that contain security flaws, at 79 percent, making it marginally better than the public sector at 82 percent.

Key Points: 
  • Overall, the technology industry was revealed to have the second-highest proportion of applications that contain security flaws, at 79 percent, making it marginally better than the public sector at 82 percent.
  • Encouragingly, when tech firms do discover flaws in their applications, they are comparatively fast to reach the halfway point of remediation.
  • The Veracode State of Software Security (SoSS) v12 analyzed the full historical data from Veracode services and customers.
  • Veracode is a leading AppSec partner for creating secure software, reducing the risk of security breach, and increasing security and development teams productivity.

73 Percent of Retail Applications Contain Security Flaws, but Only a Quarter Are Fixed

Retrieved on: 
Tuesday, November 22, 2022

Veracode , a leading global provider of modern application security testing solutions, today revealed that almost three-quarters of applications in the retail & hospitality sector contain security flaws, but only 25 percent of these are fixed.

Key Points: 
  • Veracode , a leading global provider of modern application security testing solutions, today revealed that almost three-quarters of applications in the retail & hospitality sector contain security flaws, but only 25 percent of these are fixed.
  • Despite the relatively low number of flaws that are fixed, the retail industry takes second place for overall remediation rate, highlighting the need for software security improvements from organizations across all sectors.
  • Veracode analyzed three different scan types to generate industry comparisons for fix times: dynamic analysis security testing (DAST), static analysis security testing (SAST), and software composition analysis (SCA).
  • Veracode is a leading AppSec partner for creating secure software, reducing the risk of security breach, and increasing security and development teams productivity.

Manufacturing Overtakes Financial Services as the Sector With Fewest Software Security Flaws

Retrieved on: 
Wednesday, October 19, 2022

Veracode , a leading global provider of application security testing solutions, today revealed that the manufacturing sector has the lowest number of software security flaws, dethroning financial services which took first place last year.

Key Points: 
  • Veracode , a leading global provider of application security testing solutions, today revealed that the manufacturing sector has the lowest number of software security flaws, dethroning financial services which took first place last year.
  • The data was published in the companys annual State of Software Security (SoSS) report v12 , which analyzed 20 million scans across half a million applications in the manufacturing, healthcare, financial services, technology, retail, and government sectors.
  • Last year, we found 76 percent of manufacturing apps contained flaws, with 21 percent considered high severity.
  • The Veracode State of Software Security (SoSS) v12 analyzed the full historical data from Veracode services and customers.

Healthcare Sector Leads the Way for Fix Rate of Software Security Flaws

Retrieved on: 
Thursday, September 22, 2022

Veracode , a leading global provider of application security testing solutions, today revealed that the healthcare sector takes first place for the proportion of software security flaws that are fixed, at 27 percent.

Key Points: 
  • Veracode , a leading global provider of application security testing solutions, today revealed that the healthcare sector takes first place for the proportion of software security flaws that are fixed, at 27 percent.
  • We hope healthcare developers and IT staff see this as a welcome ray of sunshine amidst the all-too-often gloomy realm of software security.
  • Despite taking the top spot for fix rate, 77 percent of applications in the healthcare industry contain vulnerabilities, with 21 percent of applications containing high severity vulnerabilities.
  • Veracode is a leading AppSec partner for creating secure software, reducing the risk of security breach, and increasing security and development teams productivity.

Financial Services Software Has Fewer Security Flaws Than Most Industries

Retrieved on: 
Tuesday, August 23, 2022

Across the six industries, the financial sector has the second-lowest proportion of applications containing security flaws, at 73 percent.

Key Points: 
  • Across the six industries, the financial sector has the second-lowest proportion of applications containing security flaws, at 73 percent.
  • In last years report, the industry boasted the lowest number of software security flaws across all sectors but has been overtaken by manufacturing in this years study.
  • Despite having fewer flaws overall, the financial services sector comes joint last with technology and government for the lowest proportion of flaws that are fixed.
  • We found that while financial services applications have fewer security flaws than last year, the sector lags behind other industries when it comes to fix rate.

Simplifying Software Security: Veracode Enhances Frictionless Experience for Developers

Retrieved on: 
Tuesday, August 9, 2022

1 Veracode Beat the Heat security flaw heat map, State of Software Security Report v12 (Graphic: Business Wire)

Key Points: 
  • 1 Veracode Beat the Heat security flaw heat map, State of Software Security Report v12 (Graphic: Business Wire)
    Brian Roche, Chief Product Officer at Veracode, said, Modern applications are mostly assembled, not written from scratch.
  • Notable updates to the Veracode Continuous Software Security platform include:
    With government regulations driving standards for securing software supply chains, having an SBOM is increasingly important for organizations.
  • To make software security a seamless experience, Veracode continues to introduce integrations that meet developers where they work.
  • Veracode is a registered trademark of Veracode, Inc. in the United States and may be registered in certain other jurisdictions.

DevSecOps Is Mainstream: New Research Finds 20x Increase in Software Security Scanning Over the Past Decade

Retrieved on: 
Tuesday, February 8, 2022

It is no longer sufficient to scan software as a pre-production step in the last phase of the software development lifecycle.

Key Points: 
  • It is no longer sufficient to scan software as a pre-production step in the last phase of the software development lifecycle.
  • Continuous security testing using multiple scanning types is fast becoming the norm as organizations recognize the need to analyze the software they build across multiple dimensions.
  • In addition to improvements in scan cadence and remediation capacity, Veracodes research uncovered the positive impact of interactive security training.
  • Veracode is the leading AppSec partner for creating secure software, reducing the risk of security breach, and increasing security and development teams productivity.

Millburn Bolsters Investment Team with Deputy Chief Investment Officer Hire

Retrieved on: 
Wednesday, January 5, 2022

Millburn Ridgefield Corporation (Millburn), the multi-billion AuM quantitative investment firm based in New York, has appointed Michael Soss to the new role of deputy chief investment officer, effective January 4, 2022.

Key Points: 
  • Millburn Ridgefield Corporation (Millburn), the multi-billion AuM quantitative investment firm based in New York, has appointed Michael Soss to the new role of deputy chief investment officer, effective January 4, 2022.
  • Soss will report to Grant Smith, co-CEO and chief investment officer, and will share responsibility with Smith for management of Millburns systematic research and development functions, including system design, modelling, data management and execution.
  • Soss holds an AB in Mathematics from Harvard University, and MSc and PhD degrees in Computer Science from McGill University in Montreal, Canada.
  • Combined with his proven managerial capabilities, we expect he will play a key role at Millburn.