Testing for security during development: why we should scrap penetrate-and-patch | IEEE Conference Publication | IEEE Xplore