Developers behaving badly: Why holistic AppSec is key
ID: 15898df2-7625-5f16-862b-bc74c7d3a866
STIX ID: report--15898df2-7625-5f16-862b-bc74c7d3a866
Feed Name: ReversingLabs Blog
Date Published: 2023-12-07
Date Updated: 2026-04-29
Author: [email protected] (Ericka Chickowski)
This analysis outlines how untested releases, risky developer behaviors, and the rise of AI-generated and low-code/no-code applications are expanding software risk, arguing for a holistic AppSec strategy that embeds IAM guardrails, branch protections, and anomaly monitoring across development ecosystems while automating “shift-everywhere” testing—including final-stage checks for malware, tampering, signatures, and secrets. Survey data reveals widespread bypassing of MFA/VPN, credential sharing, and pushing untested (often GenAI-derived) code; experts urge policies, education, and developer-friendly security controls to manage accelerating CI/CD and the surge of AI- and low-code-built applications.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
