Application weaknesses and software vulnerabilities continue to be the most common external attack method. Now is not the time to backslide on your application security efforts. Instead, follow the path of many other firms that focus their efforts on pushing security testing early in software development, implement autoremediation, and shore up production protections. Security leaders should read this report to help guide improvements in their own programs.