Security News > 2022 > September > The Ultimate Security Blind Spot You Don't Know You Have

According to recent studies, developers spend more time maintaining, testing and securing existing code than they do writing or improving code.
Security vulnerabilities have a bad habit of popping up during the software development process, only to surface after an application has been deployed.
"How much time does a developer spend on learning to write a functioning code? And how much is spent on learning about code security? Or learning how not to code?".
Another common mistake is focusing solely on the software supply chain security and only addressing known vulnerabilities in existing software products and packages listed in the famous Common Vulnerabilities and Exposures database or the National Vulnerability Database.
Dealing with any vulnerabilities in third-party components, your dependencies, or the operating environment is essential, but this won't help you with vulnerabilities in your own code.
Look for a which covers a wide range of programming languages and provides thorough coverage of secure coding standards, vulnerability databases, and industry-renowned critical software weakness types.
News URL
https://thehackernews.com/2022/09/the-ultimate-security-blind-spot-you.html