What is a recommended defense for the CIS Control for Application Software Security?
Keep debugging code in production web applications for quick troubleshooting
Limit access to the web application production environment to just the developers
Run a dedicated vulnerability scanner against backend databases
Display system error messages for only non-kernel related events
Submit