Close Menu
Mena Insights
    Business

    Synology Targets Middle East Growth with Enhanced Data Solutions at Dubai’s Solution Day

    Synology’s Solution Day 2024 brought together more than 100 IT leaders and professionals in Dubai…

    Business

    Incorta empowers GCC Organisations with Rapid Data Integration for unrivalled business insights

    Dubai, UAE: In the GCC’s rapidly expanding digital landscape, organisations are tackling an ever-increasing overflow of…

    Business

    RAKEZ delegation to India engages business leaders across three major cities

    Ras Al Khaimah: Ras Al Khaimah Economic Zone (RAKEZ) successfully wrapped up a week-long roadshow across…

    Important Pages:
    • Privacy Policy
    • Terms & Conditions
    Facebook X (Twitter) Instagram Pinterest
    Breaking News:
    • Faraday Future Hosts FX Super One Delivery Ceremony for Soccer Legend Andrés Iniesta in Dubai; Middle East Operations Enter Product Delivery and Revenue Phase
    • Statement by Her Excellency Mouza Al Nasri, CEO of Khalifa Fund for Enterprise Development
    • H.E. Dr. Mansoor Al Awar Chancellor of Hamdan Bin Mohammed Smart University On the Occasion of the 54th Union Day of the United Arab Emirates
    • Bosch to Showcase Integrated Industrial Innovations at Industrial Transformation Saudi Arabia 2025
    • Emirates Post issues commemorative stamp celebrating the UAE’s 54th Union Day
    • Bin Ham Travel Group Renews Partnership with Amadeus to Elevate Travel Experiences and Accelerate Growth
    • Statement by H.E. Ahmad Saeed bin Meshar Al Muhairi, SLC Secretary General, on the occasion of the UAE’s 54th Union Day
    • Music Legend AR Rahman Unveils a Song of Hope Honoring the UAE’s Spirit at the Sheikh Zayed Festival
    Monday, December 1
    Facebook X (Twitter) Instagram
    Mena Insights
    • Home
    • News

      Naseej joins GITEX Dubai 2025

      Hamdan Foundation launches judging process for “Innovators 2025” amid record participation

      AUS and ADPIC sign MoU empowering students to tackle real-world infrastructure challenges

      Legends Charity Game in Lisbon to raise millions for charity

      Joel Corry and Imanbek to headline star-studded SBC Summit Opening Party

    • Business

      Faraday Future Hosts FX Super One Delivery Ceremony for Soccer Legend Andrés Iniesta in Dubai; Middle East Operations Enter Product Delivery and Revenue Phase

      Statement by Her Excellency Mouza Al Nasri, CEO of Khalifa Fund for Enterprise Development

      H.E. Dr. Mansoor Al Awar Chancellor of Hamdan Bin Mohammed Smart University On the Occasion of the 54th Union Day of the United Arab Emirates

      Bosch to Showcase Integrated Industrial Innovations at Industrial Transformation Saudi Arabia 2025

      Emirates Post issues commemorative stamp celebrating the UAE’s 54th Union Day

    • Tourism

      Etihad reports June 2025 traffic statistics

      Saudi Red Sea Authority Issues Maritime Tourism Agent License to Support Coastal Tourism Activities

      Sojern joins forces with PubMatic to expand Travel Audience Data Curation

      Summer Splash Fest is BACK at LEGOLAND® Water Park 

      Jubail Island celebrates Spinneys grand opening,

    • Technology

      FootAR Showcased Augmented Reality at the SBC Summit Lisbon 2025

      Careem Food launches ‘Dirhams for Delays’ in Abu Dhabi and Al Ain

      Ministry of Transportation and Telecommunications and stc Bahrain sign a landmark agreement to launch the Kingdom’s first digital bus station

      Marketing Academy to Debut at SBC Summit 2025 with Gary Vaynerchuk AMA

      Player Protection in the Spotlight at SBC Summit 2025

    • Submit A Press Release
    Mena Insights
    Home » Veracode Research Reveals Government Applications at Heightened Risk of Cyber Attack: 59% Have Flaws Left Unfixed for More than a Year
    Business

    Veracode Research Reveals Government Applications at Heightened Risk of Cyber Attack: 59% Have Flaws Left Unfixed for More than a Year

    Share
    Facebook Twitter Pinterest WhatsApp

    Veracode, a global leader in application risk management, today released research revealing applications developed by public sector organizations have more security debt than those created by the private sector. Security debt, defined for this report as flaws that remain unfixed for longer than a year, exists in 59 percent of applications in the public sector, compared to the overall rate of 42 percent. The research analyzed public sector organizations in more than 25 countries across the globe.

    “Decades of accumulated security debt in unpatched software and poor security configurations, are in the applications that serve our government,” said Chris Eng, Chief Research Officer at Veracode. “Without a systematic and continuous approach to finding and fixing security flaws, the public sector is left dangerously exposed to attacks from hackers.”

    Federal government systems are increasingly under cyberattack, as malicious criminals target public sector organizations with more damaging and disruptive techniques. In response, the federal government is enforcing a flurry of initiatives to strengthen cybersecurity, including efforts to reduce risk in the applications that serve the government. In March of 2024, the Cybersecurity and Infrastructure Security Agency (CISA) and the Office of Management and Budget (OMB) released the Secure Software Development Attestation Form to hold providers to the federal government accountable for insecure software.

    Veracode researchers found that while slightly fewer public sector organizations (68 percent) have security debt than other industries (71 percent), they tend to accumulate more of it. Only three percent of applications are flaw-free, compared to six percent across other industries. Even more concerning, 40 percent of public sector entities have persistent, high-severity flaws that constitute ‘critical’ security debt, which would put the confidentiality, integrity, and availability of businesses at serious risk if exploited.

    “The good news is that most organizations have the capacity to remediate all critical debt, but risk prioritization is key,” said Eng. “Two-thirds of all flaws in public sector organizations are either less than one year old or are not critical in severity. In addition, less than one percent of all flaws constitute critical security debt. By prioritizing that security debt with focused effort, organizations can achieve maximum risk reduction and then move to address non-critical flaws based on their risk tolerance and capabilities.”

    According to the report, security debt in the public sector primarily affects first-party code (93 percent), but most of the critical security debt comes from third-party dependencies (55.5 percent). This reinforces the importance of the Open Source Security Software Initiative (OS3I), an inter-agency working group focused on ensuring open-source software is “as safe, secure and sustainable as it is open.” It also emphasizes the need for organizations to focus on both first- and third-party code to effectively reduce security debt.

    The analysis further shows security debt in the public sector is primarily concentrated in older, larger applications (22 percent). This is especially true for critical security debt (30 percent), confirming a correlation between application age and the accumulation of security debt. Researchers also compared the security debt profile for different development languages and found that Java and .NET applications stand out as significant sources of debt in the public sector.

    “The current state of software security in the public sector reinforces the importance of making secure by design a standard approach for the whole network connected world,” closed Eng. “We applaud CISA’s recent announcement of its Secure by Design Pledge and are proud to be one of the inaugural signatories. Our goal with this research is to further support our government and industry partners in promoting widespread adoption of these principles.”

    Share. Facebook Twitter Pinterest WhatsApp

    Related Posts

    Business

    Faraday Future Hosts FX Super One Delivery Ceremony for Soccer Legend Andrés Iniesta in Dubai; Middle East Operations Enter Product Delivery and Revenue Phase

    Business

    Statement by Her Excellency Mouza Al Nasri, CEO of Khalifa Fund for Enterprise Development

    Business

    H.E. Dr. Mansoor Al Awar Chancellor of Hamdan Bin Mohammed Smart University On the Occasion of the 54th Union Day of the United Arab Emirates

    Business

    Bosch to Showcase Integrated Industrial Innovations at Industrial Transformation Saudi Arabia 2025

    Business

    Emirates Post issues commemorative stamp celebrating the UAE’s 54th Union Day

    Business

    Bin Ham Travel Group Renews Partnership with Amadeus to Elevate Travel Experiences and Accelerate Growth

    Business

    Statement by H.E. Ahmad Saeed bin Meshar Al Muhairi, SLC Secretary General, on the occasion of the UAE’s 54th Union Day

    Business

    Music Legend AR Rahman Unveils a Song of Hope Honoring the UAE’s Spirit at the Sheikh Zayed Festival

    We're Social
    • Facebook
    • Twitter
    Editors Picks
    Business

    Smpl Fund I Invests $250,000 in Qora71, Supporting AI and Tech Entrepreneurs in MENA

    Business

    IBM and nybl collaborate to deliver AI-powered industrial solutions using watsonx and Maximo

    Business

    GRAB AN LG DEAL IN THE FINAL DAYS OF NOON YELLOW FRIDAY SALES

    Business

    iFX EXPO Dubai 2025 is Fast Approaching 

    Top Post
    Business

    Rolls-Royce secures emergency power supply at new airport terminal in Kuwait with mtu gensets

    Rolls-Royce is supplying seven mtu backup-power generators to expand the energy infrastructure at Kuwait International…

    Business

    Introducing OPPO Reno12 F 5G: Your First Choice AI Phone Boasting Unrivaled AI Portrait Capabilities, Elegance, Durability & Connectivity

    United Arab Emirates, July, 2024 – OPPO today introduces Reno12 F 5G, adding to its popular…

    Business

    AUTONOMOUS A2Z Becomes First Korean Company to Obtain Singapore’s M1 Autonomous Vehicle License

    AUTONOMOUS A2Z secured AV approval in Singapore and proved global scalability by adapting to right-hand…

    Business

    ROLLS-ROYCE MOTOR CARS ABU DHABI TAKES HOME THE ‘ENGAGE’ AWARD AT THE REGIONAL DEALER CONFERENCE

    “It is with great pleasure that we present the ‘Engage’ award to Rolls-Royce Motor Cars…

    Business

    Schneider Electric Showcases AI-Powered Digital Grid Platform at World Utilities Congress 2025

    Abu Dhabi, United Arab Emirates: Schneider Electric, a global leader in the digital transformation of energy…

    Embark on a journey of enlightenment with Mena Insights, your beacon of knowledge and understanding in the MENA region. Discover the latest news, gain valuable insights, and explore diverse perspectives that shape our dynamic world.

    Facebook X (Twitter)
    Our Picks
    Business

    SOL Properties achieves landmark AED 174 million sale for Fairmont Residences Solara Tower Dubai triplex sky mansion

    Business

    CNTXT leverages AWS cloud to empower UAE start-up and Abu Dhabi government at GITEX 2024

    Business

    Eid Al Etihad: United in Vision, Innovation & Progress

    Top Reviews
    News

    A Gift of Enduring Spirit: Liu Shiming Art Foundation Announced Sculpture Donation to AUC

    Business

    Doer Market Expands to Accept Expert Blockchain and Crypto Service Providers

    Business

     This Christmas, Lana Lusa Invites Guests “Home” 

    © 2025 Mena Insights.
    • Home
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.