A new report from the Software Assurance Forum for Excellence in Code sheds new light on how vendors are trying to work more secure coding into the product development process. The report reflects a growing trend in the infosec community that relies less on bolt-on defenses and more on well-written software code. Adobe Systems has taken heavy criticism for the number of vulnerabilities attackers have been able to exploit. SAFECode Executive Director Paul Kurtz acknowledged that 100 percent secure code may be impossible to achieve, and that companies will always deal with some level of vulnerability.”]

