Follow Slashdot stories on Twitter

 



Forgot your password?
typodupeerror
Security

Submission + - Why Companies Knowingly Ship Insecure Devices (securityweek.com)

wiredmikey writes: A recent survey which included responses from 800 engineers and developers that work on embedded devices, revealed that 24% of respondents knew of security problems in their company’s products that had not been disclosed to the public before the devices were shipped. But just what that means in terms of attitudes towards security may be more complex than it seems.

Additionally, just 41% said their company has “allocated sufficient time and money to secure” its device products against hacks and attacks. Despite this, 64 percent felt that when engineers call attention to potential security problems, “those problems are addressed before the device is released.”

So what exactly does this illustrate about the state of security in the development process? The answer, some say, is a jumbled collage of business pressures, bug prioritization and varying attention to security.

This discussion was created for logged-in users only, but now has been archived. No new comments can be posted.

Why Companies Knowingly Ship Insecure Devices

Comments Filter:

Nothing in progression can rest on its original plan. We may as well think of rocking a grown man in the cradle of an infant. -- Edmund Burke

Working...