New technology aims to close backdoor threats

By
Follow google news

Veracode updates its software-as-a-service


On-demand app security testing provider Veracode today launched new technology designed to improve malware and backdoor detection for developers and software buyers.

Backdoor threats can be inserted by "bad actors" in the development process, or by accident when code writers leave old debugging code in the final version, according to Veracode's chief technology officer, Chris Wysopal.

The vendor first conducted extensive research into backdoor threats to create four distinct categories, before writing scans to detect these different types of threat, he explained.

"The biggest category was unintentional debugging code," he added. " [Traditional security] is very mature now so attacks are moving towards the applications, because developers make mistakes and attackers take advantage. Offering this as a service means we can be the intermediary between customer and development teams"

Wysopal also argued that by creating a taxonomy of backdoor threats, the firm could help to educate the marketplace about these often overlooked threats.

Add iTnews as your trusted source

Got a news tip for our journalists? Share it with us anonymously here.
itweek.co.uk @ 2010 Incisive Media
Tags:

Most Read Articles

ASD to critical infrastructure ops: be ready to isolate systems for three months

ASD to critical infrastructure ops: be ready to isolate systems for three months

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

Its AI agent spent days hacking a company, but sources say OpenAI did not notice for a week

Its AI agent spent days hacking a company, but sources say OpenAI did not notice for a week

OpenAI's Hugging Face hack mixed technical brilliance with incoherent noise

OpenAI's Hugging Face hack mixed technical brilliance with incoherent noise

Log In

  |  Forgot your password?