• About Us
  • Advertising
  • Digital Magazine
  • Supplements
  • Media Pack
  • Privacy Policy
  • Contact us
CXO Insight Middle East
  • News
  • Opinion
  • Business
    • Industries
      • Transport
      • Retail
      • Government
      • Real Estate
      • Education
      • Energy
      • Banking and Finance
    • Channel
  • Future
    • Tech
    • Gadgets
    • Science
    • Space
    • Sustainability
  • Events
    • Channel Insights Summit 2025
    • Insight Innovation Summit
    • CXO50 Oman
    • CXO50
    • ICT Awards
      • Dubai 2025
      • Saudi Arabia
    • Cyber Strategists Summit
    • Cloud Connect 2025
    • Channel Awards 2024
    • All events
  • GITEX
  • Digital Magazine
No Result
View All Result
CXO Insight Middle East
  • News
  • Opinion
  • Business
    • Industries
      • Transport
      • Retail
      • Government
      • Real Estate
      • Education
      • Energy
      • Banking and Finance
    • Channel
  • Future
    • Tech
    • Gadgets
    • Science
    • Space
    • Sustainability
  • Events
    • Channel Insights Summit 2025
    • Insight Innovation Summit
    • CXO50 Oman
    • CXO50
    • ICT Awards
      • Dubai 2025
      • Saudi Arabia
    • Cyber Strategists Summit
    • Cloud Connect 2025
    • Channel Awards 2024
    • All events
  • GITEX
  • Digital Magazine
No Result
View All Result
CXO Insight Middle East
No Result
View All Result

Manufacturing Dethrones Financial Services by having the lowest Software Security Flaws

by CXO Staff
October 21, 2022
in News

Sector still has room for improvement, with some of the lowest and slowest fix rates, especially for open-source flaws

Manufacturing Dethrones Financial Services by having the lowest Software Security Flaws

Veracode revealed that the manufacturing sector has the lowest number of software security flaws, dethroning financial services, which took first place last year. The data was published in the company’s annual State of Software Security (SoSS) report v12, which analyzed 20 million scans across half a million applications in the manufacturing, healthcare, financial services, technology, retail, and government sectors.

While the industry grappled with increased pressure and demand on the supply chain, manufacturing emerged as the most-targeted industry by cybercriminals in 2021, with vulnerability exploitation identified as the top initial attack vector. Securing the software supply chain has, therefore, never been a greater priority since mandates like the US Executive Order on Cybersecurity and the EU Cyber Resilience Act put the issue firmly in the spotlight.

Chris Eng, Chief Research Officer at Veracode, said, “It’s encouraging to see flaw reduction over the past year as manufacturing organizations continue to make software security a priority—especially since technological innovation has led to the increased adoption of new platforms and environments. Last year, we found 76 percent of manufacturing apps contained flaws, with 21 percent considered ‘high severity’. These figures have decreased considerably.”

Open-source Security Flaws Stick Around for Longer

Despite the positive results in terms of flaw prevalence, Veracode’s research revealed the manufacturing sector—alongside healthcare and technology—has the lowest proportion of flaws that are fixed once they’re discovered. More alarming is the amount of time taken to remediate flaws—manufacturing industries post among the slowest timeframes for flaws discovered by static analysis (SAST), dynamic analysis (DAST), and software composition analysis (SCA). For example, around 55 percent of flaws discovered by static analysis remain unfixed after one year, and the manufacturing sector consistently lags behind the overall average by four months.

Flaws in third-party libraries found through SCA stick around longer for all industries, with 30 percent of vulnerable libraries remaining unresolved after two years. For the manufacturing sector, that statistic rises to over 40 percent, lagging the cross-industry average by more than six months.

Eng said, “This may be influenced by a larger number of specialized, industrial applications that have fewer, but harder to fix, flaws than in other industries. These results amplify the need for manufacturers to focus on addressing flaws in a timely fashion.”

Some Flaws Are More Common Than Others

The research also dived into flaw type across programming languages used by applications in the manufacturing sector, including Java, DOTNET, and JavaScript. Veracode’s research examined the types of flaws affecting applications, and found that server configuration, insecure dependencies, and information leakage are among the most common discovered in the manufacturing sector.

Eng closed, “The safety of businesses and critical infrastructure is largely dependent on the software supply chain being secure and this can only be achieved by having visibility of its components. Integrating security early in the software development lifecycle and leveraging tools to generate a Software Bill of Materials (SBOM) will provide manufacturers with assurance that the products they place in the market have fewer vulnerabilities and, therefore, less risk.”

 

Tags: featured3veracode
ShareTweet

Related Posts

data centre green sustainable
Future

Morocco to build renewable energy-powered data centre

Morocco is reportedly planning to build a large-scale data centre in Dakhla, powered entirely by renewable energy, as part of...

July 10, 2025
Saudi tech firm inks $133 million government deal
Business

Saudi tech firm inks $133 million government deal

WSM Al Aamal for Information Technology, a Saudi Arabian company specialising in technical consulting and digital solutions, has reportedly entered...

July 10, 2025

Discussion about this post

Latest Issue

Huawei unveils Pura 80 Series in Dubai

Huawei unveils Pura 80 Series in Dubai

July 11, 2025
data centre green sustainable

Morocco to build renewable energy-powered data centre

July 10, 2025
How managed services are driving enterprise resilience in the UAE

How managed services are driving enterprise resilience in the UAE

July 10, 2025

The most trusted source of strategic intelligence for IT decision makers in the Middle East.

About

  • About Us
  • Advertising
  • Digital Magazine
  • Supplements
  • Media Pack
  • Contact Us

Policies

  • Privacy Policy

© 2024 – CXO Insight Middle East. All Rights Reserved.

Facebook-f X-twitter Linkedin
Separated they live in Bookmarksgrove right at the coast of the Semantics, a large language ocean. A small river named Duden.

About

  • About Us
  • Site Map
  • Contact Us
  • Career

Policies

  • Help Center
  • Privacy Policy
  • Cookie Setting
  • Term Of Use

Join Our Newsletter

© 2024 – CXO Insight Middle East. All Rights Reserved.

Facebook-f Twitter Youtube Instagram

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Join our mailing list
Sign up here to get the latest news, updates and special offers delivered directly to your inbox.
No Result
View All Result
  • News
  • Opinions
  • Business
    • Industries
      • Transport
      • Retail
      • Government
      • Real Estate
      • Education
      • Energy
      • Banking and Finance
  • Channel
  • Future
    • Tech
    • Gadgets
    • Science
    • Space
    • Sustainability
  • Events
    • Channel Insights Summit 2025
    • Insight Innovation Summit
    • CX50 Oman
    • CXO50
    • ICT Awards
      • Dubai
      • Saudi Arabia
    • Cyber Strategists Summit
    • Cloud Connect 2025
    • Channel Awards 2023
    • All events
  • Videos
  • GITEX GLOBAL
  • Digital Magazine

© 2024 - CXO Insight Middle East. All Rights Reserved.