Zum Hauptinhalt springen
tsecurity.de LIVE
Echtzeit-Radar & Feeds
Alle RSS Feeds
👥 Community & Social
Linux Tipps & HardeningSecurity: Ausführen beliebiger Kommandos in evolution-ews (Fedora)(24.09.2026 um 07:47 Uhr)
Linux Tipps & HardeningSecurity: Mehrere Probleme in mingw-pcre2 (Fedora)(24.09.2026 um 07:47 Uhr)
Linux Tipps & HardeningSecurity: Denial of Service in nginx-mod-js-challenge (Fedora)(24.09.2026 um 07:47 Uhr)
Unix & Linux ServerSecurity: Mehrere Probleme in ipa (Red Hat)(24.09.2026 um 07:48 Uhr)
Sichere ProgrammierungWhy easing makes animation feel alive(24.09.2026 um 06:27 Uhr)
Sichere ProgrammierungMCP tool poisoning: Defending Against Metadata Manipulation in 2026(24.09.2026 um 06:32 Uhr)
Sicherheitslücken (CVE)What is a Software Bill of Materials (SBOM) and why your team needs one(24.09.2026 um 06:39 Uhr)
Linux Tipps & HardeningSecurity: Ausführen beliebiger Kommandos in evolution-ews (Fedora)(24.09.2026 um 07:47 Uhr)
Linux Tipps & HardeningSecurity: Mehrere Probleme in mingw-pcre2 (Fedora)(24.09.2026 um 07:47 Uhr)
Linux Tipps & HardeningSecurity: Denial of Service in nginx-mod-js-challenge (Fedora)(24.09.2026 um 07:47 Uhr)
Unix & Linux ServerSecurity: Mehrere Probleme in ipa (Red Hat)(24.09.2026 um 07:48 Uhr)
Sichere ProgrammierungWhy easing makes animation feel alive(24.09.2026 um 06:27 Uhr)
Sichere ProgrammierungMCP tool poisoning: Defending Against Metadata Manipulation in 2026(24.09.2026 um 06:32 Uhr)
Sicherheitslücken (CVE)What is a Software Bill of Materials (SBOM) and why your team needs one(24.09.2026 um 06:39 Uhr)
Intelligence View
⚡ tsecurity.de Intelligence

State of Devs 2025 Survey: Maybe Don't Call Yourself a Frontend Developer?

The State of Devs 2025 survey results are now available, and they contain quite a few interesting insights! I encourage you to check out the whole thing for yourself, but in the meantime I thought we could explore some of the data…

0
↗ Quelle (dev.to)
Reagiere als Erste:r — dein Feedback zählt!

The State of Devs 2025 survey results are now available, and they contain quite a few interesting insights! I encourage you to check out the whole thing for yourself, but in the meantime I thought we could explore some of the data together—and maybe learn a little about statistics in the process.






Zelda Players Earn $30,843 More on Average Compared to Minecraft Players??



Let's start with an “insight” that well… isn't really one! You'll see what I mean.



When talking about surveys or scientific research, you often hear that “correlation is not causation”. But what does that mean exactly?



Here's a concrete example. It turns out Minecraft players earn way less on average than developers who play Tears of the Kingdom:



Minecraft vs Tears of the Kingdom average salaries



In other words, a developer's income is correlated with their favorite game.



But does that mean that switching from Tears of the Kingdom to Minecraft will magically results in a salary increase? Of course not!



What's going on here is that the median age for Minecraft players is 27, vs 35 for Zelda players. And naturally, older developers with more professional experience earn more.



Now we could draw a causality link between both age and income on one hand, and age and video game preference on the other. But even that would purely be a hypothesis informed by our pre-existing knowledge about the world, and not something the data can prove one way or another.



So whenever you're exposed to any kind of statistical data, keep in mind that:




  1. Correlation is not causation.

  2. Statistics can only show correlation.






Engineers Earn $44,939 More on Average Compared to Developers??



The previous example was easy to debunk, but let's look at something a bit trickier. It turns out, job titles containing “engineer” in them carry quite a premium!



Engineers Earn $44,939 More on Average Compared to Developers



So what's going on here? Do engineer positions really pay that much better, even though the e.g. “frontend engineer” and “frontend developer” are virtually synonymous?






U.S. vs The World



Before we can advance a hypothesis, we need to consider an important variable that has a huge impact on income: respondent country.



It turns out, U.S. respondents earn a lot more than any other country:



Yearly income, U.S. vs the world



And while positions containing the word “engineer” only make up 30% of responses worldwide, they represent 56% of responses in the U.S.:



Job titles in the U.S. vs other countries



In other words, the fact the engineers earn more than developers could be due at least in some part due to the fact that a larger proportion of engineers live in the U.S.–and all programmers earn more in the U.S., no matter their job title.






Looking at the U.S.



But if respondent country is the only reason for this income gap, we would expect it to disappear when controlling for the respondent's country.



And when excluding the U.S. from the dataset, the gap does shrink quite a bit:



Yearly income for developers vs engineers outside the U.S.



Yet somehow it's still very much present when limiting the data to U.S. respondents:



Yearly income for developers vs engineers in the U.S.



And just to eliminate one more variable, the gap also exists even when comparing the exact same position (“Frontend Developer” vs ”Frontend Engineer”).



“Frontend Developer” vs ”Frontend Engineer”






But Why?



At this point you're probably waiting for me to reveal the big reason why engineers are valued so much more, at least in the U.S. Is it because of the certification? Differing job descriptions? The fact that “engineer” just sounds cooler?



Sadly, this is where this kind of surface-level statistical analysis shows its limits, and where real, on-the-ground research would be needed–a.k.a. what actual researchers do.



Because even though I might play one on TV, at the end of the day I'm not a data scientist. I'm just a regular frontend developer–I mean, engineer–with an affinity for charts and graphs.






The Query Builder



But I've always believed data scientists shouldn't be the only ones that can have all the fun. This is why all the charts I've shown today were created with the survey's own built-in query builder:



Query builder



The query builder makes it super easy for anybody to dig deeper into the data to find interesting correlations without having to learn data processing tools or import the whole dataset, and I encourage you to try it out!






Discover the State of Devs Results



This whole article was just one big long preamble to encouraging you–now that you have a solid understanding of what you should or shouldn't conclude from survey data–to explore the survey results by yourself.



So go ahead and get lost in the data, then let me know on Bluesky what you found!

CTI Threat Relationship Graph2 Knoten / 1 Relationen
CVE / Incident Software MITRE ATT&CK CWE Weakness IoC
SOC Incident Playbook: Vulnerability Remediation & Verification
title: Detect Exploitation - State of Devs 2025 Survey: Maybe Don't Call Yourself a Frontend Developer?
id: ecf29cb5-29b6-46a6-8b8d-9e026f125759
status: experimental
description: Automatisch generierte SIEM-Erkennungsregel basierend auf CTI Intelligence
references:
  - https://tsecurity.de/
author: iShareStuff CTI Automated Detection Engine
date: 2026-09-24
logsource:
  category: network_connection
  product: any
detection:
  selection:
      CommandLine|contains:
        - 'exploit'
  condition: selection
falsepositives:
  - Legitime administrative Zugriffe oder Penetrationstests
level: high
tags:
  - attack.initial_access
rule CTI_Threat_Indicator {
    meta:
        author = "iShareStuff CTI Automated Detection Engine"
        date = "2026-09-24"
        description = "YARA Signature for "
    strings:
        $str = "State of Devs 2025 Survey: May" ascii wide
    condition:
        any of them
}
tsecurity.de Cognitive Threat RAG
Fokus-Vektor:

Kognitive Analyse für identifizierte Bedrohung: Erhöhte Bedrohungslage im Bereich State of Devs 2025 Survey: Maybe Don't C.... Basierend auf 368k Vektor-Korrelationen werden sofortige Isolationsmaßnahmen für betroffene Endpunkte empfohlen.

🛡️ Angriffsfläche & Exposure

Netzwerk/Remote-Zugriff ohne Vorauthentifizierung möglich.

Empfohlene Sofortmaßnahmen
  • 1. Perimeter-Inspektion: Relevante Portfreigaben und exponierte Endpunkte unverzüglich scannen.
  • 2. Patch-Applikation: Hersteller-Hotfix einspielen oder betroffene Daemons in isolierte DMZ-Segmente überführen.
  • 3. Telemetrie & EDR-Alerts: Prozessaufrufe und Child-Processes auf anomale Shell-Spawns überwachen.
🔗 Semantisch verwandte Zero-Days MariaDB 11.7 VEC
Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten State of Devs 2025 Survey: Maybe Don't Call Yourself a Frontend Developer?

Thematisch verwandte Begriffe: State, Devs, 2025, Survey · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Zum Aktualisieren ziehen
ZERO-DAY CVE-2026-96676 | A vulnerability was identified in Fast FAC1900R 20190827_2.0.2. The impa…
Advisory →
TTS Reader • tsecurity.de Voice
tsecurity.de Icon
tsecurity.de App
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag
Themen-Radar & Intelligence Matrix
Echtzeit-Taxonomie nach Angriffsvektoren & Plattformen

tsecurity.de Live Threat Radar

🔴 LIVE RADAR
MONITORING
AKTIV
CVE-DATENBANK
LIVE
🔍
Community Radar & Live Chat
Sentinel Bot online • Live-Stream
Dein Cluster: Security Explorer
Match:
lädt…
Verbindung zum Community-Stream wird aufgebaut...
Bearbeitungsmodus — Senden überschreibt deine Nachricht
Community-Puls — was gerade passiert
lädt…
Aktivitäten deiner Analysten
lädt…
Neues Thema oder Eilmeldung einreichen

Reiche interessante Links, Zero-Days oder Debatten ein. Die Community entscheidet per Upvote über die Veröffentlichung.

Heiß diskutierte Einreichungen
🔖 Gespeicherte Artikel
📂 Keine gespeicherten Artikel vorhanden.
Zurück Ziehen Vor
Links: vorheriger Artikel Rechts: nächster Artikel unten: schließen
News NIS-2 Frühwarnung Tier-1 Intel TTP ⏱️ 3 Min vor 10 Min
Artikeldaten werden geladen...

Zurück: vorheriger Vor: nächster
↗ Original-Quelle
Social Reaktionen Deine Reaktion zählt
Einstufung & Relevanz-Poll 0 Stimmen
In sozialen Netzwerken teilen 1-Klick