<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Maqsud Mohammad on foojay.io - Friends of OpenJDK</title><link>https://foojayio.github.io/website/today/author/maqsud-mohammad/</link><description>Articles written by Maqsud Mohammad on foojay.io - Friends of OpenJDK</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Mon, 19 Aug 2024 12:57:59 +0000</lastBuildDate><atom:link href="https://foojayio.github.io/website/today/author/maqsud-mohammad/index.xml" rel="self" type="application/rss+xml"/><item><title>Are Critical Vulnerabilities Lurking in Your Java Ecosystem?</title><link>https://foojayio.github.io/website/today/are-critical-vulnerabilities-lurking-in-your-java-ecosystem/</link><pubDate>Mon, 19 Aug 2024 12:57:59 +0000</pubDate><guid>https://foojayio.github.io/website/today/are-critical-vulnerabilities-lurking-in-your-java-ecosystem/</guid><description>&lt;p&gt;Java, the popular object-oriented language renowned for its portability, performance, and security, is often the preferred choice for organisations building everything from enterprise and cloud-native applications to Android apps.&lt;/p&gt;
&lt;p&gt;However, despite these strengths, Java&amp;rsquo;s popularity and the complex ecosystem of third-party libraries it relies upon have also made it a prime target for malicious actors to exploit vulnerabilities. According to the Datadog &amp;ldquo;State of DevSecOps&amp;rdquo;[1] report, a staggering 90% of Java services are susceptible to one or more critical or high-severity vulnerabilities, often stemming from external dependencies, compared to an average of 47% for other technologies. This discrepancy is concerning and points to inherent issues within the Java ecosystem.&lt;/p&gt;</description></item></channel></rss>