in reply to Security techniques every programmer should know
To that, add
That includes periodically reviewing the change logs on the CPAN modules you use.