Welcome!

Open Source Cloud Authors: Pat Romanski, Elizabeth White, Liz McMillan, Rostyslav Demush, Charles Araujo

News Feed Item

CAST Research Finds Java Frameworks Strongly Influence Security, Reliability

Today CAST (Euronext: CAS) released the initial results from research on the use of Java in its CRASH (CAST Research on Application Software Health) series, revealing which of the enterprise Java frameworks delivers the most secure and reliable applications.

With this information, C-suite executives can now better understand how choices made in the IT department can impact the security and reliability of mission-critical enterprise applications. The data shows clearly that seemingly arcane decisions, such as the selection of a programming framework, can significantly increase or decrease the likelihood of a system crash. In today’s online business environment, when zero downtime is a necessity, the CRASH report helps inform enterprise technology selections with relevant data that will enhance the end result of those decisions.

“CIOs can no longer afford to be in the dark about their IT team’s choice of programming language and tools, because those decisions have a material impact on the business,” says Jay Sapiddi, vice president of CAST Research Labs. “With data from this CRASH study, CIOs can now have detailed conversations with their application development departments about the security and reliability of the specific framework they are using to build enterprise applications. Likewise, IT leaders should double check their choice of framework, how they mix languages, and how they enforce architectural integrity. Frameworks boost developer productivity, but they can also heighten risk and reduce quality.”

After conducting big data analysis of 496 applications with 152 million lines of code submitted by 88 organizations across six global industries, CAST researchers uncovered myriad business insights about the most popular open source Java frameworks: Struts, JEE, Hibernate, and Spring. The full research with detailed data analysis results will be presented in a public webinar on Jan. 29, 2013. Some of the top-level findings include:

  • Hibernate has the highest quality scores.
  • Applications built with Struts have the lowest quality scores.
  • Applications that did not use any framework had a huge variance in quality, which indicates that frameworks do in fact help develop applications of predictable quality.

One common challenge for developers with framework usage is configuring them correctly. CAST data shows that a large majority of applications analyzed had some level of misconfiguration, indicating the need for better training or to simplify the use of frameworks. The research also found that application quality is affected when organizations mix multiple programming languages in a single system. When this happens:

  • Applications built in pure JEE, with no frameworks or multi-lingual mingling, had the highest quality scores.
  • Mixing Java with C or C++ lowers quality scores.
  • Mixing Java with COBOL, Java-DB, and Microsoft .NET delivered higher quality scores.

These results were arrived at by analyzing data in CAST’s Appmarq database, the world’s largest repository of static analysis data of business applications. The Appmarq database includes over 544 million lines of source code culled from over 1,134 applications, which were provided by leading global companies in financial services, insurance, telecom, technology, government, manufacturing, energy, utilities, retail, and wholesale.

The complete CRASH Special Report and the detailed data analysis will be discussed in a live webinar on Tuesday, Jan. 29, 2013 from 11a.m. to 12p.m. EST. For more information on CAST, CAST Research Labs, the CRASH study, or Appmarq, visit CAST.

About CAST

CAST is a pioneer and world leader in software analysis and measurement, with unique technology resulting from more than $100 million in R&D investment. CAST introduces fact-based transparency into application development and sourcing to transform it into a management discipline. More than 250 companies across all industry sectors and geographies rely on CAST to prevent business disruption while reducing hard IT costs. CAST is an integral part of software delivery and maintenance for the world's leading IT service providers. Founded in 1990, CAST is listed on NYSE-Euronext (Euronext: CAS) and serves IT-intensive enterprises worldwide with a network of offices in North America, Europe, and India.

For more information about CAST:

More Stories By Business Wire

Copyright © 2009 Business Wire. All rights reserved. Republication or redistribution of Business Wire content is expressly prohibited without the prior written consent of Business Wire. Business Wire shall not be liable for any errors or delays in the content, or for any actions taken in reliance thereon.

IoT & Smart Cities Stories
The hierarchical architecture that distributes "compute" within the network specially at the edge can enable new services by harnessing emerging technologies. But Edge-Compute comes at increased cost that needs to be managed and potentially augmented by creative architecture solutions as there will always a catching-up with the capacity demands. Processing power in smartphones has enhanced YoY and there is increasingly spare compute capacity that can be potentially pooled. Uber has successfully ...
Chris Matthieu is the President & CEO of Computes, inc. He brings 30 years of experience in development and launches of disruptive technologies to create new market opportunities as well as enhance enterprise product portfolios with emerging technologies. His most recent venture was Octoblu, a cross-protocol Internet of Things (IoT) mesh network platform, acquired by Citrix. Prior to co-founding Octoblu, Chris was founder of Nodester, an open-source Node.JS PaaS which was acquired by AppFog and ...
The deluge of IoT sensor data collected from connected devices and the powerful AI required to make that data actionable are giving rise to a hybrid ecosystem in which cloud, on-prem and edge processes become interweaved. Attendees will learn how emerging composable infrastructure solutions deliver the adaptive architecture needed to manage this new data reality. Machine learning algorithms can better anticipate data storms and automate resources to support surges, including fully scalable GPU-c...
Predicting the future has never been more challenging - not because of the lack of data but because of the flood of ungoverned and risk laden information. Microsoft states that 2.5 exabytes of data are created every day. Expectations and reliance on data are being pushed to the limits, as demands around hybrid options continue to grow.
JETRO showcased Japan Digital Transformation Pavilion at SYS-CON's 21st International Cloud Expo® at the Santa Clara Convention Center in Santa Clara, CA. The Japan External Trade Organization (JETRO) is a non-profit organization that provides business support services to companies expanding to Japan. With the support of JETRO's dedicated staff, clients can incorporate their business; receive visa, immigration, and HR support; find dedicated office space; identify local government subsidies; get...
With 10 simultaneous tracks, keynotes, general sessions and targeted breakout classes, @CloudEXPO and DXWorldEXPO are two of the most important technology events of the year. Since its launch over eight years ago, @CloudEXPO and DXWorldEXPO have presented a rock star faculty as well as showcased hundreds of sponsors and exhibitors! In this blog post, we provide 7 tips on how, as part of our world-class faculty, you can deliver one of the most popular sessions at our events. But before reading...
René Bostic is the Technical VP of the IBM Cloud Unit in North America. Enjoying her career with IBM during the modern millennial technological era, she is an expert in cloud computing, DevOps and emerging cloud technologies such as Blockchain. Her strengths and core competencies include a proven record of accomplishments in consensus building at all levels to assess, plan, and implement enterprise and cloud computing solutions. René is a member of the Society of Women Engineers (SWE) and a m...
Charles Araujo is an industry analyst, internationally recognized authority on the Digital Enterprise and author of The Quantum Age of IT: Why Everything You Know About IT is About to Change. As Principal Analyst with Intellyx, he writes, speaks and advises organizations on how to navigate through this time of disruption. He is also the founder of The Institute for Digital Transformation and a sought after keynote speaker. He has been a regular contributor to both InformationWeek and CIO Insight...