Related Links

  • Fortify Security
  • Elsevier Ltd is not responsible for the content of external websites.

Related Stories

  • Smartphone apps need securing at the software development stages
    Smartphones could very easily become spy phones, with hackers able to eavesdrop on your conversations, researchers at Rutgers University in the US have warned.
  • What’s in store for 2010?
    The Noughties are behind us now, but memories of a decade of data breaches will continue to haunt the infosec professional. If only there was a way of knowing what the threat landscape would look like in the months to come. Well you’re in luck as Davey Winder has dusted off the crystal ball and spoken to a broad church of infosec professionals to get some informed predictions for 2010
  • Sophos reports Windows 7 open to virus infections
    A blog report from IT security vendor Sophos concludes that Windows 7, the newly-released Microsoft operating system, is vulnerable to 80% of viruses.
  • Fortify cautions on new WiFi security threat
    The WiFi Alliance is putting the finishing touches to a peer-to-peer version of its popular WiFi standards. Known as WiFi Direct, the proposed standard allows WiFI devices to link directly to each other, without the need for a router or access point, something which poses a potentially serious security threat to companies with WiFi networks, according to Fortify.
  • Tony Blair's hacked Facebook profile contains a serious message
    Politics aside, the recent hack of Tony Blair’s Faith Foundation Facebook page reveals a serious problem with the application used in the page’s creation, says application vulnerability specialist, Fortify Software.

News

Three quarters of companies think they are vulnerable to hacking

08 June 2009

Seventy three percent of IT professionals admit their software applications are vulnerable to hackers in a survey conducted by application security specialists Fortify Software at this year’s Infosecurity Europe in London.

Although down by eight percent from last year’s survey, Fortify finds the results disturbing.

Barmak Meftah, senior vice president, products & technologies at Fortify Software, said: “Although pleased by a reduction in respondents who admit their software applications are vulnerable to attack, eight percent simply isn’t good enough. Today, such an informed audience shouldn’t be citing security concerns as bottom of anyone’s mind or worse not considered a priority. Businesses really should be looking to alleviate the security risks in their applications and achieve software security assurance so that they don’t have to face the expense and embarrassment of being hacked.”

Almost half (46%) of the IT professionals said that hacking at the application level is the easiest way into a company – an increase of a third over 2008 results, Fortify said. 5% said that 76-100% of hacks are targeted at applications.

Furthermore, a third of respondents said they believe buying external applications could pose a greater security threat than when writing them in-house, but worryingly, 35% did not consider checking these externally procured applications for flaws and vulnerabilities.

Over half (55%) of the IT professionals said they are worried about application security because it has not been made a priority for the developers. Perhaps even worse, 21% expressed concern because application security seem to be at the bottom of people’s minds at the same time as 23% of respondents said there has been an increase in attacks since the start of the economic downturn with 26% of respondents having fallen victim to at least one instance of hacking over the last year.

 

This article is featured in:
Application Security

 

Comment on this article

You must be registered and logged in to leave a comment about this article.