Close Menu
Mena Insights
    Business

    SBC Awards Europe: Meet the 2025 Winners 

    Betsson, Soft2Bet, and Novibet were among the standout winners at last night’s inaugural SBC Awards Europe ceremony. The prestigious ceremony took…

    Business

    Studio52 Launches Video Cost Estimator Feature for Seamless Project Planning

    Studio52, a leading media services company, is excited to announce the launch of its new Video…

    Technology

    Virgin Mobile UAE and UAE PASS launch the UAEs first 100% digital eSIM onboarding journey.

    In a market first for the UAE, Virgin Mobile UAE has integrated the UAE PASS…

    Important Pages:
    • Privacy Policy
    • Terms & Conditions
    Facebook X (Twitter) Instagram Pinterest
    Breaking News:
    • ADQ and Azerbaijan Investment Holding sign Memorandum of Understanding
    • Innovo and Siemens announce strategic partnership in building technologies
    • Du spotlights commitment to excellence in government communication through participation in IGCF 2025
    • Ciel Dubai Marina Vignette Collection to open in November 2025
    • RAK Hospital expands Ancestry Testing portfolio, launches UAE’s first Y-DNA ancestry test
    • Sedar Global taps into booming Saudi interiors market at INDEX Saudi 2025
    • Etijah Marks 15 Years of Shaping Purposeful Careers Across the Region
    • Ministry of Transportation and Telecommunications and stc Bahrain sign a landmark agreement to launch the Kingdom’s first digital bus station
    Wednesday, September 17
    Facebook X (Twitter) Instagram
    Mena Insights
    • Home
    • News

      AUS and ADPIC sign MoU empowering students to tackle real-world infrastructure challenges

      Legends Charity Game in Lisbon to raise millions for charity

      Joel Corry and Imanbek to headline star-studded SBC Summit Opening Party

      Etihad reports June 2025 traffic statistics

      Saudi Red Sea Authority Issues Maritime Tourism Agent License to Support Coastal Tourism Activities

    • Business

      ADQ and Azerbaijan Investment Holding sign Memorandum of Understanding

      Innovo and Siemens announce strategic partnership in building technologies

      Du spotlights commitment to excellence in government communication through participation in IGCF 2025

      Ciel Dubai Marina Vignette Collection to open in November 2025

      RAK Hospital expands Ancestry Testing portfolio, launches UAE’s first Y-DNA ancestry test

    • Tourism

      Etihad reports June 2025 traffic statistics

      Saudi Red Sea Authority Issues Maritime Tourism Agent License to Support Coastal Tourism Activities

      Sojern joins forces with PubMatic to expand Travel Audience Data Curation

      Summer Splash Fest is BACK at LEGOLAND® Water Park 

      Jubail Island celebrates Spinneys grand opening,

    • Technology

      Ministry of Transportation and Telecommunications and stc Bahrain sign a landmark agreement to launch the Kingdom’s first digital bus station

      Marketing Academy to Debut at SBC Summit 2025 with Gary Vaynerchuk AMA

      Player Protection in the Spotlight at SBC Summit 2025

      EZhire now live on noon’s NowNow app: On-demand car rentals delivered in 90 minutes

      TASC slashes Tech Hiring Time in Saudi Arabia with launch of Tech Vertical AIQU

    Mena Insights
    Home » Veracode Research Reveals Government Applications at Heightened Risk of Cyber Attack: 59% Have Flaws Left Unfixed for More than a Year
    Business

    Veracode Research Reveals Government Applications at Heightened Risk of Cyber Attack: 59% Have Flaws Left Unfixed for More than a Year

    Share
    Facebook Twitter Pinterest WhatsApp

    Veracode, a global leader in application risk management, today released research revealing applications developed by public sector organizations have more security debt than those created by the private sector. Security debt, defined for this report as flaws that remain unfixed for longer than a year, exists in 59 percent of applications in the public sector, compared to the overall rate of 42 percent. The research analyzed public sector organizations in more than 25 countries across the globe.

    “Decades of accumulated security debt in unpatched software and poor security configurations, are in the applications that serve our government,” said Chris Eng, Chief Research Officer at Veracode. “Without a systematic and continuous approach to finding and fixing security flaws, the public sector is left dangerously exposed to attacks from hackers.”

    Federal government systems are increasingly under cyberattack, as malicious criminals target public sector organizations with more damaging and disruptive techniques. In response, the federal government is enforcing a flurry of initiatives to strengthen cybersecurity, including efforts to reduce risk in the applications that serve the government. In March of 2024, the Cybersecurity and Infrastructure Security Agency (CISA) and the Office of Management and Budget (OMB) released the Secure Software Development Attestation Form to hold providers to the federal government accountable for insecure software.

    Veracode researchers found that while slightly fewer public sector organizations (68 percent) have security debt than other industries (71 percent), they tend to accumulate more of it. Only three percent of applications are flaw-free, compared to six percent across other industries. Even more concerning, 40 percent of public sector entities have persistent, high-severity flaws that constitute ‘critical’ security debt, which would put the confidentiality, integrity, and availability of businesses at serious risk if exploited.

    “The good news is that most organizations have the capacity to remediate all critical debt, but risk prioritization is key,” said Eng. “Two-thirds of all flaws in public sector organizations are either less than one year old or are not critical in severity. In addition, less than one percent of all flaws constitute critical security debt. By prioritizing that security debt with focused effort, organizations can achieve maximum risk reduction and then move to address non-critical flaws based on their risk tolerance and capabilities.”

    According to the report, security debt in the public sector primarily affects first-party code (93 percent), but most of the critical security debt comes from third-party dependencies (55.5 percent). This reinforces the importance of the Open Source Security Software Initiative (OS3I), an inter-agency working group focused on ensuring open-source software is “as safe, secure and sustainable as it is open.” It also emphasizes the need for organizations to focus on both first- and third-party code to effectively reduce security debt.

    The analysis further shows security debt in the public sector is primarily concentrated in older, larger applications (22 percent). This is especially true for critical security debt (30 percent), confirming a correlation between application age and the accumulation of security debt. Researchers also compared the security debt profile for different development languages and found that Java and .NET applications stand out as significant sources of debt in the public sector.

    “The current state of software security in the public sector reinforces the importance of making secure by design a standard approach for the whole network connected world,” closed Eng. “We applaud CISA’s recent announcement of its Secure by Design Pledge and are proud to be one of the inaugural signatories. Our goal with this research is to further support our government and industry partners in promoting widespread adoption of these principles.”

    Share. Facebook Twitter Pinterest WhatsApp

    Related Posts

    Business

    ADQ and Azerbaijan Investment Holding sign Memorandum of Understanding

    Business

    Innovo and Siemens announce strategic partnership in building technologies

    Business

    Du spotlights commitment to excellence in government communication through participation in IGCF 2025

    Business

    Ciel Dubai Marina Vignette Collection to open in November 2025

    Business

    RAK Hospital expands Ancestry Testing portfolio, launches UAE’s first Y-DNA ancestry test

    Business

    Sedar Global taps into booming Saudi interiors market at INDEX Saudi 2025

    Business

    Etijah Marks 15 Years of Shaping Purposeful Careers Across the Region

    Business

    Ministry of Transportation and Telecommunications and stc Bahrain sign a landmark agreement to launch the Kingdom’s first digital bus station

    We're Social
    • Facebook
    • Twitter
    Editors Picks
    Business

    Doer Market Expands to Accept Expert Blockchain and Crypto Service Providers

    News

    MAIA Luxury: Where heritage meets haute couture in the heart of Dubai

    Business

    Panasonic Announces FY24 Business Strategy For Sustained Growth in Middle East and Africa 

    Business

    SBC Summit Malta to Spotlight Next-Gen Tech Driving the Future of Sports Betting

    Top Post
    Business

    EtihadWE and HCT Partner to Provide EV Charging Stations on Campuses

    Etihad Water and Electricity (EtihadWE) has signed a collaboration agreement with the Higher Colleges of…

    Business

    STC Bank launches “Numu+” savings product

    STC Bank has launched the unique savings product “Numu+”, which aims to encourage customers to…

    News

    Dubai International Program For Writing Concludes ‘Book Criticism’ Workshop

    The Dubai International Program for Writing (DIPW), one of the leading knowledge projects of the…

    Business

    From Global Markets to Next-Gen Tech: SBC Summit 2025 Brings a Revamped Conference Programme to Lisbon

    Returning to Lisbon, SBC Summit will present a reimagined agenda designed to better serve a global audience,…

    Business

    GBM becomes region’s first company to join Red Hat partner practice accelerator

    Dubai, United Arab Emirates: Gulf Business Machines (GBM), a leading end-to-end digital solutions provider, has become…

    Embark on a journey of enlightenment with Mena Insights, your beacon of knowledge and understanding in the MENA region. Discover the latest news, gain valuable insights, and explore diverse perspectives that shape our dynamic world.

    Facebook X (Twitter)
    Our Picks
    Business

    Eternal Edge Fashion: Timeless Excellence in Modern Style

    Tourism

    Amsa Hospitality and Luxury Hotelschool Paris Sign Strategic Partnership for Hospitality Training Academy in Saudi Arabia

    Business

    Tag heuer races into watches & wonders 2025

    Top Reviews
    Business

    ADNEC Centre Al Ain Prepares to Host the Emirates Agriculture Conference and Exhibition 2025

    Business

    Incorta empowers GCC Organisations with Rapid Data Integration for unrivalled business insights

    Business

    Transforming Customer Experiences: Regional Brands Invest Big in AI and CX Infrastructure, Reveals CX Live Intelligence Report 2023

    © 2025 Mena Insights.
    • Home
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.