logo

Developers behaving badly: Why holistic AppSec is key

ID: 15898df2-7625-5f16-862b-bc74c7d3a866

STIX ID: report--15898df2-7625-5f16-862b-bc74c7d3a866

Feed Name: ReversingLabs Blog

Date Published: 2023-12-07

Date Updated: 2026-04-29

Author: [email protected] (Ericka Chickowski)

...
...

This analysis outlines how untested releases, risky developer behaviors, and the rise of AI-generated and low-code/no-code applications are expanding software risk, arguing for a holistic AppSec strategy that embeds IAM guardrails, branch protections, and anomaly monitoring across development ecosystems while automating “shift-everywhere” testing—including final-stage checks for malware, tampering, signatures, and secrets. Survey data reveals widespread bypassing of MFA/VPN, credential sharing, and pushing untested (often GenAI-derived) code; experts urge policies, education, and developer-friendly security controls to manage accelerating CI/CD and the surge of AI- and low-code-built applications.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.