Datadog's 2023 State of Application Security Report Presents Top AppSec Trends
The report found that ninety-seven percent of security vulnerabilities labeled as "critical" could actually be deprioritized
The emergence of widespread vulnerabilities and the importance of rapidly discovering vulnerable applications means the onus is on DevOps teams to stay ahead of threats while maintaining release velocity and ensuring efficient use of security budgets. All vulnerabilities rated critical by the Common Vulnerability Scoring System (CVSS) get prioritized for fixes by application and security teams. However, according to
The research report compared the standard CVSS severity score with a modified severity score that accounts for runtime context. This approach considers evidence of suspicious traffic, as well as internet-exposed or sensitive environments. As a result, ninety seven percent of vulnerabilities labeled as critical by CVSS could be downgraded and assigned a lower severity score.
"In today's macroeconomic environment, it is more important than ever to optimize costs wherever possible. For security teams, that means there is increased pressure to find and fix the vulnerabilities that will most impact the business," said
Other findings from the report include:
- One out of every ten attacks targeted non-production environments.
- Seven out of ten attacks failed to succeed because they targeted the wrong programming language, operating systems or vulnerabilities.
- Java services have the most critical vulnerabilities while Python services have the fewest.
The 2023 State of Application Security Report is available now. Read the full report here: https://www.datadoghq.com/state-of-application-security.
About
Forward-Looking Statements
This press release may include certain "forward-looking statements" within the meaning of Section 27A of the Securities Act of 1933, as amended, or the Securities Act, and Section 21E of the Securities Exchange Act of 1934, as amended including statements on the benefits of new products and features. These forward-looking statements reflect our current views about our plans, intentions, expectations, strategies and prospects, which are based on the information currently available to us and on assumptions we have made. Actual results may differ materially from those described in the forward-looking statements and are subject to a variety of assumptions, uncertainties, risks and factors that are beyond our control, including those risks detailed under the caption "Risk Factors" and elsewhere in our
Contact
press@datadoghq.com
View original content to download multimedia:https://www.prnewswire.com/news-releases/datadogs-2023-state-of-application-security-report-presents-top-appsec-trends-301807327.html
SOURCE