{"id":190,"date":"2008-10-13T07:36:56","date_gmt":"2008-10-13T15:36:56","guid":{"rendered":"http:\/\/jaredrobinson.com\/blog\/?p=190"},"modified":"2009-07-11T04:05:17","modified_gmt":"2009-07-11T04:05:17","slug":"web-app-security-statistics","status":"publish","type":"post","link":"https:\/\/jaredrobinson.com\/blog\/web-app-security-statistics\/","title":{"rendered":"Web App Security Statistics"},"content":{"rendered":"<p>Perhaps this is a bit old, but it&#8217;s the first time I&#8217;ve seen it, and I thought it was interesting enough to share.<\/p>\n<p>[http:\/\/www.webappsec.org\/projects\/statistics\/](http:\/\/www.webappsec.org\/projects\/statistics\/)<\/p>\n<p>* more than 7% of analyzed sites can be compromised automatically<br \/>\n* Detailed manual and automated assessment using white and black box methods shows that probability to detect high severity vulnerability reaches 96.85%.<br \/>\n* The most prevalent vulnerabilities are Cross-Site Scripting, Information Leakage, SQL Injection and Predictable Resource Location<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Perhaps this is a bit old, but it&#8217;s the first time I&#8217;ve seen it, and I thought it was interesting enough to share. [http:\/\/www.webappsec.org\/projects\/statistics\/](http:\/\/www.webappsec.org\/projects\/statistics\/) * more than 7% of analyzed sites can be compromised automatically * Detailed manual and automated assessment using white and black box methods shows that probability to detect high severity vulnerability &hellip; <\/p>\n<p class=\"link-more\"><a href=\"https:\/\/jaredrobinson.com\/blog\/web-app-security-statistics\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Web App Security Statistics&#8221;<\/span><\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[12,16,17],"tags":[],"class_list":["post-190","post","type-post","status-publish","format-standard","hentry","category-programming","category-security","category-tech"],"_links":{"self":[{"href":"https:\/\/jaredrobinson.com\/blog\/wp-json\/wp\/v2\/posts\/190","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/jaredrobinson.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/jaredrobinson.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/jaredrobinson.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/jaredrobinson.com\/blog\/wp-json\/wp\/v2\/comments?post=190"}],"version-history":[{"count":4,"href":"https:\/\/jaredrobinson.com\/blog\/wp-json\/wp\/v2\/posts\/190\/revisions"}],"predecessor-version":[{"id":362,"href":"https:\/\/jaredrobinson.com\/blog\/wp-json\/wp\/v2\/posts\/190\/revisions\/362"}],"wp:attachment":[{"href":"https:\/\/jaredrobinson.com\/blog\/wp-json\/wp\/v2\/media?parent=190"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/jaredrobinson.com\/blog\/wp-json\/wp\/v2\/categories?post=190"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/jaredrobinson.com\/blog\/wp-json\/wp\/v2\/tags?post=190"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}