Software Security Blog

A Guide to OWASP’s Secure Coding Practices Checklist
In 2022, 33% of newly discovered vulnerabilities were flagged as critical or high. Explore OWASP’s secure coding practice checklist and learn how to leverage its power to boost your threat protection and reduce attack risks Digitalization is both a blessing and a curse for organizations.…
Blogging About Everything Software Security – Threats, Updates, Best Practices, Tips, & More
Software touches the everyday lives of billions of people around the world. They rely on us (the software industry) to deliver dependable, safe applications for them to use. This blog is dedicated to working together to do our part to make the (software) world a better place…one piece of software at a time!
-
Things That Go Bump in the Night — Er, On the Web The internet is an incredibly useful and resourceful tool, but it’s also an alluring hangout for bad guys. And it’s a permanent record. Once you post or publish something, a record of it is there for good — even if you delete the…
-
Protect Your Software Integrity & Boost Customer Confidence by Signing Your Software With a Code Signing Certificate Provided by a Globally Trusted CAA code signing certificate is an essential tool for software publishers—it confirms that the author of the software is genuine and guarantees that the software and related files (executables, code, and content) haven’t…
-
70% of surveyed technology organizations were impacted by a software supply chain attack in 2021. Explore five unbeatable certificates and key management tips that’ll help you protect the integrity of your software and help you secure your digital identity to stay a step ahead of attackers 50,000 This is the average number of digital certificates DigiCert reports organizations…
-
Second quarter 2022: 1,700 cyberattacks per organization per week. 32% more than the previous year. Don’t become part of the statistic. Discover how following our web application security checklist today can help you secure your web application tomorrow. It takes years to build a good reputation but only a few minutes to ruin it Mirror, mirror on…
-
41% of organizations were victims of an API attack in the last 12 months. Don’t take your API security for granted ever again. Follow our top 11 best practices and learn how to protect your users’ and organization’s sensitive data by boosting your API’s defenses Is your organization using application programming interfaces (APIs)? You’re not alone.…
-
Welcome to the era of ‘secure everything, everywhere.’ This secure software development framework in our 10-minute guide will show you how to mitigate software vulnerabilities from the beginning to end of your SDLC. Because even in 2022, insecure applications remain the main cause of data breaches In 2021, the number of identified software vulnerabilities (i.e., holes…
-
82% of IT organization leaders would prefer a vendor contributing to the open source community. What about you? Are you an open source geek or a proprietary software fan? Explore the open source vs proprietary software pros and cons, discover your favorite style, and select the right software to boost your business now! Open source or…
-
74% of security incidents Sophos analyzed in 2021 were based on PowerShell. Don’t skimp on security — arm yourself with information! Here are nine easy ways to protect your PowerShell scripts against cyber threats to make your IT system and data safer now! PowerShell can be a very powerful tool for system administrators and developers alike.…
-
In 2021, PowerShell was the number one attack vector with 35% of organizations impacted. The solution? Code signing your scripts. Discover how to activate world-class security and protect your PowerShell scripts with a code signing certificate Companies expect their development teams to do more with less. This is why 66% of businesses automate their processes, and using…
-
Do you need a code signing certificate to test an application and you don’t want to fork out money to buy one? Learn how to use PowerShell to create a self-signed certificate with a private key. It’s easy as one-two-three and it won’t cost you a thing In the last two years, incidents caused by…
-
Errare humanum est: To err is human. With organizations managing more than 50,000 certificates, it’s easy for one to slip through the net. And the consequences can be rough. Don’t bury your head in the sand. Learn what happens when a code signing certificate expires so that when and if it happens to you, you’ll…
-
Did you know that code signing is included in MITRE’s attack mitigation solutions list? If so, great. But if not, read on to become a code signing sensei. Discover how to sign an exe like a pro in five steps. With a third of data breaches in the U.S. caused by malware, reassuring your customers and end users that your…
-
Discover the meaning of this security message and how you can reduce its negative impact. Boost your downloads and give your customers peace of mind by confirming that your software is genuine and it’s really coming from you It’s June 2022. Researchers at F5 Labs identify an Android malware “MaliBot” disguising as a cryptocurrency mining app and…
-
34 new startups joined Crunchbase’s “Stable of Unicorns” only in May 2022. Is your unicorn going to win the race and be next? Discover the perfect mix of B2B marketing channels that’ll help you crush your business goals and make your startup a raging success Software as a service (SaaS) has become one of the hottest…
-
With big names like IBM increasing their offering of software-as-a-service (SaaS), standing out in the SaaS market is becoming a real challenge. Discover nine winning strategies that’ll enable you to build the perfect offensive to help you gain a slice of the pie and outsmart the competition The software-as-a-service industry (SaaS) is booming, and it doesn’t…