Back Issues/Search Home → Calendar → Archive → Current Issue → Popular →

All issuesVolume 329, Issue 2IT NewsDevOps

Survey Traces Large Amount Of Breaches Back To Vulnerable Code

DevOps.com, Thursday, August 14th, 2025

A survey of 1,519 application security stakeholders finds nearly all (98%) work for organizations that have experienced a security breach attributable to vulnerable code, with 81% acknowledging their organization has shipped code with known vulnerabilities into production environments.

Conducted by Censuswide on behalf of Checkmarx, the survey also finds more than a quarter of organizations (27%) experienced four or more breaches due to these vulnerabilities, with 38% reporting that vulnerable code is being shipped to meet a business, feature or deadline requirement.

Roughly a third of respondents are resigned to additional incidents occurring in the next 18 months, with software supply chain compromise (35%) topping the list followed by a third-party vendor/partner security incident (35%), cloud infrastructure misconfiguration (34%), insider threat or privileged access misuse (33%) and application programming interface (API) security breach or business logic attack (32%).

more →  ·  More from DevOps →