codeql

No Wikipedia entry exists for this tag
  1. Git

    Software/Scripts ICYMI: improved C++ vulnerability coverage and CodeQL support for Lombok

    In the ever-evolving software development landscape, static application security solutions face a unique challenge: as applications grow in complexity, they rely heavily on a diverse array of libraries, frameworks, and custom code. Ensuring the security of such intricate systems requires a...
  2. Git

    Software/Scripts The GitHub Security Lab’s journey to disclosing 500 CVEs in open source projects

    When I stepped onto the scale this morning, I remembered that there are some numbers that feel awkward to celebrate, while perhaps some others are worth celebrating! Recently, the GitHub Security Lab passed the milestone of 500 CVEs disclosed to open source projects. What’s a CVE? In short, it’s...
  3. Git

    Software/Scripts CodeQL team uses AI to power vulnerability detection in code

    AI is fundamentally changing the technology and security landscape. At GitHub, we see AI as a way for developers to both speed up their development process and simultaneously write more secure code. For instance, GitHub Copilot includes a security filter that targets the most common vulnerable...
  4. Git

    Software/Scripts CodeQL zero to hero part 2: getting started with CodeQL

    CodeQL is a static analysis tool that can be used to automatically scan your applications for vulnerabilities and to assist with a manual code review. In this blog, we will look closer at CodeQL and how to write CodeQL queries. Below, we include voluntary challenges, but it is highly...
  5. Git

    Software/Scripts Multi-repository variant analysis: a powerful new way to perform security research across GitHub

    The security community identifies new vulnerabilities at an astonishing rate and helps developers all over the world secure their code. GitHub is actively facilitating this collaboration with tools like private vulnerability reporting and the GitHub Advisory Database. Today, we’re announcing the...
  6. Git

    Software/Scripts ICYMI: CodeQL enhancements

    Over the last year, GitHub has brought a number of enhancements to CodeQL, the semantic analysis engine that powers code scanning. You can now scan new languages, detect new types of CWEs, perform deeper analyses of your applications, and enjoy improvements to the user experience. Let’s check...
198 111Темы
635 082Сообщения
3 618 399Пользователи
DimJenНовый пользователь
Верх