Saudi Press

Saudi Arabia and the world
Saturday, Feb 22, 2025

Copycat coders create 'vulnerable' apps

Copycat coders create 'vulnerable' apps

Developers who copy code rather than write it themselves leave apps open to attack, a study warns.

Lazy developers who copy solutions to tricky programming problems are creating apps that are vulnerable to attack, research suggests.

A team of computer scientists looked at more than 72,000 chunks of code found on the Stack Overflow website.

The site is popular with developers seeking advice on the best way to fix broken code.

But researchers found many of the most copied snippets lacked basic checks that would stop common attacks.

The dangerous code chunks often used obsolete functions, did little to check user responses and did not look for attempts to break the application, said the study.


Security risks


The researchers, also trawled through a website where many developers upload and share the code behind their apps and programmes.

The most widely used insecure code blocks turned up in more than 2,800 separate projects on the Github website, they found.

The research team, involving experts at Canadian and Iranian universities, focused on the C++ programming language, which is used in a huge variety of projects, from small programs to large distributed systems.

The team informed those they found using the problematic code chunks on Github that they may have introduced security risks into their apps and programmes.


The hard way


But only 13% of the developers contacted said they had fixed the code, the researchers said. A similar number declined to fix the bugs.

Some 40% said the code was safe because users could not change it once an app was running.

"The people who are using Stack Overflow, they shouldn't trust it fully," said Prof Ashkan Sami, a computer scientist at Shiraz University in Iran who co-wrote the study.

"It's better for programmers to do it the hard way and learn secure coding," he told The Register tech news site.

Prof Sami said the team had developed an extension for the Chrome browser that checks when code is copied from Stack Overflow and lets coders know if it is poorly written or insecure.

Newsletter

Related Articles

Saudi Press
0:00
0:00
Close
Saudi Arabia and the United States Strengthen Ties Amid Global Developments
Saudi Arabia Hosts Global Conference to Promote Islamic Unity
The Impact of Artificial Intelligence on Education and Child Development
Saudi Arabia Announces Competition for Best Founding Day Outfits
Saudi-EU Food Security Officials Hold Talks to Strengthen Collaboration
Putin Expresses Gratitude to Saudi Crown Prince for Hosting US-Russia Talks
UK and Saudi Arabia Enhance Collaboration in Innovation and Technology
Denmark's Embassy in Riyadh Showcases Danish Cuisine with Saudi Influence
Saudi Artist Salman Al-Amir Unveils 'Tafawut' Exhibition in Riyadh
Saudi Arabia Offers Condolences to Kuwait Following Military Exercise Fatalities
Saudi Ministry of Islamic Affairs Completes Ramadan Preparations in Madinah
Etidal Secretary-General Hosts UN Counter-Terrorism Director in Riyadh
ADNOC Drilling Targets Over $1 Billion in Investments for 2025 Amid Gulf Expansion Plans
Derayah Financial Achieves Remarkable Growth in Saudi Brokerage and Asset Management
Saudi Arabia Shortlists 30 Firms for Mining Licenses in Eastern Province and Tabuk
Saudi Foreign Minister Engages Counterparts at G20 Meeting in Johannesburg
Oil Prices Decline Amid Rising US Inventories
Saudi Arabia's NDMC Plans Green Bond Issuance by 2025
Moody’s Affirms Egypt’s Caa1 Rating Amid Positive Economic Outlook
Oman and Saudi Arabia Strengthen Economic Ties with New Agreements
Saudi Arabia Investments Propel Expansion of Qurayyah Power Plant
Saudi Capital Market Authority Advances SPACs and Direct Listings
Global Energy Leaders Gather in Riyadh for Symposium on Energy Outlooks
Al-Ahsa Region Sees 500% Growth in Tourism as Saudi Arabia Prioritizes Development
Saudi Arabia Advances Entrepreneurial Ecosystem in Al-Ahsa with New Agreement
King Salman Approves Official Saudi Riyal Symbol
Saudi Credit Card Lending Reaches $8.4 Billion Amid Digital Payment Expansion
King Salman Approves Official Symbol for Saudi Riyal
Putin Thanks Saudi Crown Prince for Facilitating U.S.-Russia Discussions
Saudi Foreign Minister Attends G20 Meeting in Johannesburg
Saudi Arabia Prepares for Nationwide Founding Day Celebrations
Inauguration of Hira Park and Walkway Enhances Jeddah's Urban Landscape
Crown Prince Hosts Leaders for Informal Meeting in Riyadh Amid Gaza Rebuilding Plans
Saudi Official Highlights Achievements and Media's Role in National Transformation
Three Expatriate Women Arrested for Prostitution in Riyadh
Saudi Arabia's Diplomatic Evolution Highlighted at Saudi Media Forum
Healthy Eating and Preparation Essential for Ramadan Fasting
Saudi Arabia and Japan Forge Sustainable Textile Partnership
Advanced Limb Surgery Restores Mobility in Pediatric Cancer Patient
Jeddah Event Explores AI's Role in Boosting Saudi Arabia's SME Sector
UN Representative Highlights AI's Role in Perpetuating Gender Stereotypes
Saudi and Jordanian Leaders Discuss Enhanced Security Cooperation in Amman
Saudi British Society Honors Cultural Bridge-Builders at London Gala
Saudi Media Forum 2025 Explores AI's Role in Modern Journalism
Saudi Arabia's Saqer Al-Moqbel Appointed as WTO General Council President for 2025–2026
Saudi Deputy Ministers Engage in Diplomatic Discussions with U.S. and Dutch Officials in Riyadh
Saudi Arabia to Launch Iftar Program in 61 Countries During Ramadan
Saudi Visitors Expected to Spend £942 Million in UK During 2025
Saudi Arabia Gifts Kaaba's Kiswah to Uzbekistan's Center of Islamic Civilization
Digital Cooperation Organization Concludes Fourth General Assembly with Multiple Agreements
×