An AppSec Report Card: Developers Barely Passing

  • 19 September 2014
  • 1 reply
  • 2 views

Userlevel 7
Badge +54
9/19/2014  Jeff Williams
 
A new study reveals that application developers are getting failing grades when it comes to their knowledge of critical security such as how to protect sensitive data, Web services, and threat modeling.
 Let me start by recounting an Aesop’s Fable "The Stag at the Pool."
A stag saw his shadow reflected in the water. Although he greatly admired the size of his antlers, he was angry with himself for having such weak feet. While he was contemplating himself, a lion appeared. The stag took flight and kept at a safe distance from the lion, until he entered a wood and became entangled by his horns. The lion quickly came up and caught him. The stag reproached himself: "Woe is me! How have I deceived myself! These feet which would have saved me I despised, and I gloried in these antlers which have proved my destruction."
 
Full Article.

1 reply

Userlevel 7
As always, thank you @   Well, there you have it!  This sure explains why Home Depot and Target and every bloody else is being hacked these days :S

Reply