# 25 Years in AppSec: Looking Back

DevFeed: [25 Years in AppSec: Looking Back](<https://devfeed.tech/articles/25-years-in-appsec-looking-back-36644.md>)

Original publisher: [Read original article](<https://shostack.org/blog/25-years-in-appsec-looking-back/>)

Author: Adam

Published: 2021-08-09T00:00:00Z

Content type: opinion

Language: en

Sources: [Shostack & Friends Blog](<https://devfeed.tech/sources/shostack-friends-blog.md>)

Topics: [Application Security](<https://devfeed.tech/topics/application-security.md>), [Code review](<https://devfeed.tech/topics/code-review.md>), [Tooling](<https://devfeed.tech/topics/tooling.md>), [Fuzzing/Fuzz testing](<https://devfeed.tech/topics/fuzzing.md>), [Memory safety verification](<https://devfeed.tech/topics/memory-safety-verification.md>)

Tags: [appsec](<https://devfeed.tech/tags/appsec.md>), [code-review](<https://devfeed.tech/tags/code-review.md>), [compiler](<https://devfeed.tech/tags/compiler.md>), [fuzzing](<https://devfeed.tech/tags/fuzzing.md>), [memory-safety](<https://devfeed.tech/tags/memory-safety.md>), [tooling](<https://devfeed.tech/tags/tooling.md>)

## AI overview

A retrospective on the growth of application security, beginning with code review guidelines published 25 years ago and describing how practices and tooling evolved from firewall-group reviews, linting, and compiler warnings toward broader security approaches.

## Source excerpt

Time flies and things change... A look back on the growth of this industry.