Acunetix WVS 8 Released Candidate Now Available!
releases

Acunetix Web Vulnerability Scanner Product Releases

docs & FAQs

Acunetix technical documentation and FAQ

news

Acunetix Company and Web Security news, & Press Releases

events

Acunetix Webinars, Events and Training around the world

web security zone

Everything you need to know about Web Security

Home » articles, news

2 of SANS’s top 25 most dangerous programming errors led to more than 1.5 million website security breaches in 2008

Submitted by on July 14, 2009 – 4:50 pm2 Comments

Earlier on this year, a report from SANS institute showed that two of the twenty five most dangerous programming errors, led to more than 1.5 million website security breaches in 2008.  The report is a joint effort from more than 30 US and international cyber security organizations, such as CERT, Red hat and Department of Homeland Security.  The programming errors have been categorized in three categories;

As SANS Director Mason Brown said, every programming team must have the processes in place to find, fix, or avoid these problems and have the tools needed to verify their code is as free of these errors, as automated tools can verify.

From this report, one can clearly conclude that security awareness and secure coding training are indeed a must.  Also, programmers need automated testing tools to help them measure the security of the software they are writing and automatically train them to write secure code, since unfortunately, most of the errors are not well understood by the programmers themselves.

Read the full SANS’s report here.

2 Comments »

Leave a comment!

Add your comment below, or trackback from your own site. You can also subscribe to these comments via RSS.

Be nice. Keep it clean. Stay on topic. No spam.

You can use these tags:
<a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

This is a Gravatar-enabled weblog. To get your own globally-recognized-avatar, please register at Gravatar.