Close Menu
Mena Insights
    Business

    Bayanat, Yahsat and ICEYE announce an ambitious program to broaden commercial opportunities across the UAE space-ecosystem    

    Bayanat, an ADX listed public company and leading provider of AI-powered geospatial solutions, and Al…

    Business

    MERED Unveils Strategic Vision for Saudi Arabia at Saudi Giga Projects 2025

    Dubai, UAE – May 2025: MERED, the award-winning international real estate developer, outlined its long-term investment…

    Business

    Wizz Air Abu Dhabi starts direct flights to Gabala

    Abu Dhabi, UAE – Wizz Air Abu Dhabi, the ultra-low-fare national airline of the UAE, has…

    Important Pages:
    • Privacy Policy
    • Terms & Conditions
    Facebook X (Twitter) Instagram Pinterest
    Breaking News:
    • ABC Lights Up the Season with Festive Christmas Celebration.
    • Emirates Park Zoo & Resort invites young explorers to an unforgettable Winter Camp adventure
    • Final round of Jiu-Jitsu President’s Cup kicks off tomorrow at Mubadala Arena
    • Ministry of Education and Higher Education and AUB Sign MoU to Advance Education Reform and Strengthen Online Learning in Lebanon
    • For people, by people: Emirates Nature-WWF launches volunteer-led Advisory Committee for nature
    • BR-X3 Night Vision, the instrument watch for night missions
    • LG Elevates UAE Enterprise Workspaces with 6K Monitors and Swing Smart Ergonomics 
    • UNWRAP THE SEASON WITH KOSAS HOLIDAY FAVORITES
    Saturday, December 6
    Facebook X (Twitter) Instagram
    Mena Insights
    • Home
    • News

      Naseej joins GITEX Dubai 2025

      Hamdan Foundation launches judging process for “Innovators 2025” amid record participation

      AUS and ADPIC sign MoU empowering students to tackle real-world infrastructure challenges

      Legends Charity Game in Lisbon to raise millions for charity

      Joel Corry and Imanbek to headline star-studded SBC Summit Opening Party

    • Business

      ABC Lights Up the Season with Festive Christmas Celebration.

      Emirates Park Zoo & Resort invites young explorers to an unforgettable Winter Camp adventure

      Final round of Jiu-Jitsu President’s Cup kicks off tomorrow at Mubadala Arena

      Ministry of Education and Higher Education and AUB Sign MoU to Advance Education Reform and Strengthen Online Learning in Lebanon

      For people, by people: Emirates Nature-WWF launches volunteer-led Advisory Committee for nature

    • Tourism

      Etihad reports June 2025 traffic statistics

      Saudi Red Sea Authority Issues Maritime Tourism Agent License to Support Coastal Tourism Activities

      Sojern joins forces with PubMatic to expand Travel Audience Data Curation

      Summer Splash Fest is BACK at LEGOLAND® Water Park 

      Jubail Island celebrates Spinneys grand opening,

    • Technology

      FootAR Showcased Augmented Reality at the SBC Summit Lisbon 2025

      Careem Food launches ‘Dirhams for Delays’ in Abu Dhabi and Al Ain

      Ministry of Transportation and Telecommunications and stc Bahrain sign a landmark agreement to launch the Kingdom’s first digital bus station

      Marketing Academy to Debut at SBC Summit 2025 with Gary Vaynerchuk AMA

      Player Protection in the Spotlight at SBC Summit 2025

    • Submit A Press Release
    Mena Insights
    Home » About Us » Veracode Research Reveals Government Applications at Heightened Risk of Cyber Attack: 59% Have Flaws Left Unfixed for More than a Year
    Business

    Veracode Research Reveals Government Applications at Heightened Risk of Cyber Attack: 59% Have Flaws Left Unfixed for More than a Year

    Share
    Facebook Twitter Pinterest WhatsApp

    Veracode, a global leader in application risk management, today released research revealing applications developed by public sector organizations have more security debt than those created by the private sector. Security debt, defined for this report as flaws that remain unfixed for longer than a year, exists in 59 percent of applications in the public sector, compared to the overall rate of 42 percent. The research analyzed public sector organizations in more than 25 countries across the globe.

    “Decades of accumulated security debt in unpatched software and poor security configurations, are in the applications that serve our government,” said Chris Eng, Chief Research Officer at Veracode. “Without a systematic and continuous approach to finding and fixing security flaws, the public sector is left dangerously exposed to attacks from hackers.”

    Federal government systems are increasingly under cyberattack, as malicious criminals target public sector organizations with more damaging and disruptive techniques. In response, the federal government is enforcing a flurry of initiatives to strengthen cybersecurity, including efforts to reduce risk in the applications that serve the government. In March of 2024, the Cybersecurity and Infrastructure Security Agency (CISA) and the Office of Management and Budget (OMB) released the Secure Software Development Attestation Form to hold providers to the federal government accountable for insecure software.

    Veracode researchers found that while slightly fewer public sector organizations (68 percent) have security debt than other industries (71 percent), they tend to accumulate more of it. Only three percent of applications are flaw-free, compared to six percent across other industries. Even more concerning, 40 percent of public sector entities have persistent, high-severity flaws that constitute ‘critical’ security debt, which would put the confidentiality, integrity, and availability of businesses at serious risk if exploited.

    “The good news is that most organizations have the capacity to remediate all critical debt, but risk prioritization is key,” said Eng. “Two-thirds of all flaws in public sector organizations are either less than one year old or are not critical in severity. In addition, less than one percent of all flaws constitute critical security debt. By prioritizing that security debt with focused effort, organizations can achieve maximum risk reduction and then move to address non-critical flaws based on their risk tolerance and capabilities.”

    According to the report, security debt in the public sector primarily affects first-party code (93 percent), but most of the critical security debt comes from third-party dependencies (55.5 percent). This reinforces the importance of the Open Source Security Software Initiative (OS3I), an inter-agency working group focused on ensuring open-source software is “as safe, secure and sustainable as it is open.” It also emphasizes the need for organizations to focus on both first- and third-party code to effectively reduce security debt.

    The analysis further shows security debt in the public sector is primarily concentrated in older, larger applications (22 percent). This is especially true for critical security debt (30 percent), confirming a correlation between application age and the accumulation of security debt. Researchers also compared the security debt profile for different development languages and found that Java and .NET applications stand out as significant sources of debt in the public sector.

    “The current state of software security in the public sector reinforces the importance of making secure by design a standard approach for the whole network connected world,” closed Eng. “We applaud CISA’s recent announcement of its Secure by Design Pledge and are proud to be one of the inaugural signatories. Our goal with this research is to further support our government and industry partners in promoting widespread adoption of these principles.”

    Share. Facebook Twitter Pinterest WhatsApp

    Related Posts

    Business

    ABC Lights Up the Season with Festive Christmas Celebration.

    Business

    Emirates Park Zoo & Resort invites young explorers to an unforgettable Winter Camp adventure

    Business

    Final round of Jiu-Jitsu President’s Cup kicks off tomorrow at Mubadala Arena

    Business

    Ministry of Education and Higher Education and AUB Sign MoU to Advance Education Reform and Strengthen Online Learning in Lebanon

    Business

    For people, by people: Emirates Nature-WWF launches volunteer-led Advisory Committee for nature

    Business

    BR-X3 Night Vision, the instrument watch for night missions

    Business

    LG Elevates UAE Enterprise Workspaces with 6K Monitors and Swing Smart Ergonomics 

    Business

    UNWRAP THE SEASON WITH KOSAS HOLIDAY FAVORITES

    We're Social
    • Facebook
    • Twitter
    Editors Picks
    Business

    Disrupt-X, Intel and Rekeep sign MoU to advance AI-driven sustainable infrastructure across the GCC, Europe, and Asia

    Business

    Coral Announces Closure of Seed Round Funding, Raising $3 Million to Transform Carbon Emission Management

    Business

    Maharah signs Manpower brand license agreement to strengthen its role as a gateway for global companies entering Saudi Arabia

    Business

    Dell Technologies Research: AI Advancements in Saudi Arabia Pave the Way for Skills and Growth

    Top Post
    Business

    MILESTONE SYSTEMS TO LAUNCH GENERATIVE AI PLUG-IN FOR XPROTECT, STREAMLINING VIDEO REVIEW AND RESPONSE

    Milestone Systems, a world leader in data-driven video technology, announces its forthcoming generative AI-powered video analytics plug-in for its XProtect® video management software, developed in collaboration with NVIDIA. Designed to help operators contextualize alarms and focus on what truly matters, the new tool automates video review, filters out false alarms, and, based on initial findings, […] The post MILESTONE SYSTEMS TO LAUNCH GENERATIVE AI PLUG-IN FOR XPROTECT, STREAMLINING VIDEO REVIEW AND RESPONSE appeared first on Web-Release.

    Business

    Empower commences excavation and foundation works for its new District Cooling Plant in Al Sufouh

    Dubai, United Arab Emirates: Emirates Central Cooling Systems Corporation PJSC (Empower), the World’s Largest District Cooling…

    Business

    “Ian Chambers, CEO of Linea, Provides Insights on Successfully Navigating the Complex Saudi Arabia Healthcare Market”

    The Saudi Arabia healthcare market is currently undergoing a substantial transformation, driven by the Vision…

    Business

    GFH Partners Acquires Majority Stake in Devmark

    GFH Partners Ltd. (“GFH Partners”), a Dubai International Financial Center (“DIFC”) headquartered investment manager and the global real estate investment arm of GFH Financial Group, has acquired a majority stake in Devmark Real Estate Brokers L.L.C (“Devmark”), the UAE’s leading real estate development project sales and marketing platform. Founded in 2018, Devmark has led the […] The post GFH Partners Acquires Majority Stake in Devmark appeared first on Web-Release.

    News

    Saudi crown prince pushing hard to realign Mideast dynamics

    RIYADH – Saudi Arabia’s unpredictable crown prince is pushing hard to realign Middle East dynamics,…

    Embark on a journey of enlightenment with Mena Insights, your beacon of knowledge and understanding in the MENA region. Discover the latest news, gain valuable insights, and explore diverse perspectives that shape our dynamic world.

    Facebook X (Twitter)
    Our Picks
    Technology

    Pizza Hut Gaming ME Celebrates One Year Anniversary with Successful Collaborations and Achievements in 2022

    Business

    EEG partners with Farnek to offer carbon footprint assessment

    Business

    Tag heuer races into watches & wonders 2025

    Top Reviews
    Business

    Bahrain Bourse appoints Al Ramz as financial advisor to support capital market enhancement

    Business

    ZEE5 Global Unveils Telugu Original Series ‘Nayanam’, Marking Varun Sandesh’s OTT Debut

    Business

    KDK Expands Product Offering with Launch of New In-Line Centrifugal Fans at Big 5

    © 2025 Mena Insights.
    • Home
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.