Microsoft survey of IT pros and developers worldwide found only 37% worked for organizations that built products with security in mind
Application security, web app security, secure code development and software vulnerabilities
Without universally availability, plan could miss smaller businesses hackers could use as an entry point to critical infrastructure companies
Microsoft has noticed a small uptick in viruses that infect files
With the government said to be the biggest buyer of malicious tools, some fear it will weaken the nation's cyber defenses -- public and private
One of the patched ColdFusion flaws is already targeted by attackers
Intelligence not the only part of government that has struggled. Senate has not moved on legislation to back President's order on cybersecurity
French-speaking organizations are receiving bogus calls asking them to check an invoice, which is actually malware
Security pro says attacks designed for further breaches, noting, 'They're not gathering this information and sending it home for no reason'
Still hungry? Here are links to application security books, associations, and other information resources to help you find (and avoid) vulnerabilities and build secure software and websites.
The Web Application Hacker's Handbook: Discovering and Exploiting Security Flaws by Dafydd Stuttard (2011). On Amazon.com.
24 Deadly Sins of Software Security: Programming Flaws and How to Fix Them by Michael Howard (2010). On Amazon.com
Gray Hat Hacking The Ethical Hackers Handbook, 3rd Edition by Allen Harper (2011). On Amazon.com.
OWASP, the Open Web Application Security Project.
BSIMM, the Building Security In Maturity Model.
Also see Application and software security certifications in CSOonline's Security Certification Directory.