Software Security Blog

A Guide to OWASP’s Secure Coding Practices Checklist
In 2022, 33% of newly discovered vulnerabilities were flagged as critical or high. Explore OWASP’s secure coding practice checklist and learn how to leverage its power to boost your threat protection and reduce attack risks Digitalization is both a blessing and a curse for organizations.…
Blogging About Everything Software Security – Threats, Updates, Best Practices, Tips, & More
Software touches the everyday lives of billions of people around the world. They rely on us (the software industry) to deliver dependable, safe applications for them to use. This blog is dedicated to working together to do our part to make the (software) world a better place…one piece of software at a time!
-
Get verified: discover how to become a verified publisher with Microsoft. Learn how to boost customer trust, revenue and adoption of your products while protecting your organization from data breaches and malware Over the last couple of years, we’ve witnessed an exponential increase in apps usage in every aspect of our daily life: work, leisure, travel, shopping,…
-
Add some hash to your data! Explore four flavors of one of the key ingredients of effective cybersecurity in this hash algorithm comparison article. Learn about their distinct properties and characteristics, and how they can make a difference to your organization’s data security and privacy compliance We’re living in a time where the lines between…
-
Beef up your data protection security with the most secure hashing algorithm. Learn how a one-way function can unlock your ability to truly excel in cybersecurity, protecting your sensitive data with virtually irreversible and unique hashes 2021 marked one of the most active years for cyberattacks and data breaches with software vendors experiencing the largest year-on-year growth…
-
This five-step guide provides a quick overview of how to use OpenSSL to generate a CSR for your digital certificates to secure your website or code OpenSSL allows you to generate a certificate signing request (CSR) for SSL/TLS certificates and code signing certificates. Of course, this means you’ll have to have purchased a code signing…
-
42% of cybersecurity professionals interviewed by Cisco consider the growing number of application vulnerabilities one of their top concerns. Discover how to take your software development life cycle to the next level by joining the secure SDLC revolution The Cybersecurity and Infrastructure Security Agency (CISA) has warned organizations that Log4Shell will remain a threat for at least the next decade.…
-
Creating a certificate signing request (CSR) is the first step to get a code signing certificate. Here are step-by-step instructions to quickly generate a CSR with the DigiCert Certificate Utility A code signing certificate CSR — or what’s sometimes referred to as a code signing CSR or code signing request — is what you need…
-
This step-by-step guide will walk you through how to install a .pfx certificate on Windows 10 Certificate Manager (i.e., how to import a .pfx certificate file). This process works for importing code signing certificates as well as client authentication certificates and email signing certificates Much like with many other technical tasks, installing a code signing…
-
This brief guide introduces you to Windows 10 Certificate Manager. This tool allows you to view and manage installed digital certificates on Windows devices as well as view CRLs and CTLs as well When you install digital certificates onto your computer, there’s one place where they should be imported right away: the Windows 10 Certificate…
-
Scan before you click! Discover the best free safe download checkers you need to try right now. We’ll cover what tools you can use to protect your devices from security threats when downloading files, software, and apps on the internet Did you know that AV-TEST has already identified 6.31 million new malicious malware and potentially unwanted…
-
Discover how a small change in word order can make a difference to your organization’s security strategy in software development by enabling you to deliver secure, high-quality software faster With the number of security attacks skyrocketing and software being released more frequently, secdevops and devsecops have become popular terms within IT organizations looking to incorporate security into their…
-
Learn how integrating secure devops into your business strategy can improve your software, protect your organization, and put security at the heart of software development without having to choose between security, speed and innovation 2021 was another rough year for cybersecurity. With hacking and ransomware making the headlines throughout the year, the number of data…
-
Windows code signing made simple: learn in 5 easy steps how to eliminate unknown publisher warnings, build customer trust, and guarantee your code’s integrity by signing your executables using Microsoft Signtool! Technology has never evolved so fast as it has in the last few years — and cybercrimes have evolved along with it. In 2020, SonicWall reported…
-
Deep Instinct’s 2020 Cyber Threat Landscape Report shows that malware increased 358% overall in 2020. Thankfully, there’s a certificate you can use to sign apps that helps users determine whether your application is legitimate. Discover which certificate can protect your customers, ensure the integrity of your apps, and increase trust and confidence in your brand. In a…
-
Data from a Symantec report shows that 99% of the discovered mobile malware is found in third-party app stores. Learning how to recognize safe download websites and following a few best practices can protect you and your business from the danger of downloading malware When was the last time you downloaded a piece of software…
-
Discover what code signing is, how it works, why it’s important for businesses and users alike, and why you should use it as a software developer or publisher to protect your brand Trust, authenticity, integrity are three important concepts in a digital world where people download software and apps nearly every day. From installing software…