IT Professionals Are Hacking Their Own Enterprises To Keep Intruders OutSurvey also finds 31% of companies have fallen foul of h
London, 2nd June 2010: A survey of IT security professionals has discovered that 83% consider commercial applications, the ones you buy off the shelf, to be riddled with code flaws and vulnerabilities. That's the discovery of a survey conducted byFortify Software, a leader inSoftware Security Assurance(SSA) solutions, who found that 56% believe these flaws could allow hackers to exploit these software vulnerabilities. As a result, security professionals are making heavy investments in penetration and code testing, combined with application scanning, to try and build security into the software. Half of the respondents admitted to hacking, with 73% of these respondents doing so to test the strength of their own network's defences, 13% for fun or out of curiosity, and 3% targeting their efforts at the competition.
Compiled at this year's Infosecurity Europe 2010, the survey also unearthed that, amongst the 300 IT security professionals interviewed (with the majority taken from companies employing 1,000 plus employees), 31% admitted to being victims of hacking. More interestingly, with 29% replying 'don't know', this figure could be substantially higher! The majority of respondents cited the application layer to be the hackers' main target.
57% of the IT security profession also confer that the best way to check that their software applications are free of vulnerabilities and secure is to combine all available techniques and solutions, including code and static analysis, web application firewalls, application scanners and pen testing. Only 5% of the survey respondents we spoke to said their organisations didn't employ technology for software security.
Commenting on these results,Barmak Meftah, Chief Products Officer at Fortify Softwaresaid, "It would appear organisations are frustrated with insecure off the shelf solutions, with many obviously feeling there are few alternatives, as they still purchase them. Given that companies have to make a huge investment in applications, whether off-the-shelf, outsourced or built in-house, it is paramount that they use proper procedures (as well as automatic software solutions) to test and strengthen these applications before deployment. On the subject of whether hackers can ever be described as having 'good' intentions, I'd rather be on the side of a hacker working to bring security vulnerabilities to my attention so that I can fix them before deploying an application that exposes my business to risk."
Of those in this survey that admitted to previous hacking knowledge and experience, 42% learnt in their twenties and 14% in their teens. Most people learnt to hack at work — 29%; on the Internet, 26%; at University, 13%; and 8% gained their hacking skills whilst still at school and 8% used friends to help them hone their talent.
About Fortify Software:
Press Contact:
More User Press Releases
- Fortify Software Joins Cloud Security AllianceLeader in Software Security Assurance Offers Guidance & Expertise for Organization
- Fortify Software Reports Strongest First Quarter in Company HistoryHighlights Increasing Demand for Software Security Assurance
- Poll Finds Software Security Top Priority for EnterprisesInformal Survey of RSA Conference 2010 Attendees Finds Most Organizatio
- Fortify Software Debuts Next-Generation Web Application Hybrid Security Analysis with HPAdvancement of integrated static and dyn
- Fortify Software Names Rob Roy as its Federal Chief Technology OfficerSeasoned federal technology veteran comes to software secu
- Fortify Software Launches Hosted Software Security SuiteFortify on Demand provides integrated static and dynamic security testin
- Fortify Software Accelerates Growth in Third QuarterContinues rapid expansion of customer base in the U.S. and Europe
- Fortify Software Expands Leadership in Global Software Security Market with Key Customer Wins
- Fortify Software Introduces Fortify Tracer To Improve The Effectiveness Of Black Box Security Testing
- Fortify Software Announces Definitive Agreement to Acquire Secure Software, Inc.
Like this site on Facebook
Distribute Press Release
- Post press release to 50+ free press release websites.
- Send to 100+ online publications.
- Effortlessly publish all your press releases with our automated pickup and submission service.
Shopping cart
User login
Search
Bookmark/Search this post
Primary Menu
- News by Region
- Business
- List of Industries
- Technology
- Aerospace & Defense
- Agriculture & Forestry
- Arts
- Automotive
- Business Services
- Chemicals
- Construction & Maintenance
- Consumer Goods
- Education
- Electrical & Electronics
- Energy
- Entertainment
- Food & Related Products
- General Business
- Government
- Healthcare
- Heavy Industry
- Home
- Industrial Goods & Services
- Industrial Materials
- Medical
- Mining & Drilling
- Publishing & Printing
- Retail
- Society
- Sports
- Supermarkets
- Telecommunications
- Textiles & Nonwovens
- Transportation & Logistics
- Travel & Hospitality
- Wholesale
