GitHub Sponsors is now available in Cyprus
You can now sign up for Sponsors if you have a bank account in Cyprus or any of the other 34 regions where Sponsors is generally available. Not in a…
You can now sign up for Sponsors if you have a bank account in Cyprus or any of the other 34 regions where Sponsors is generally available. Not in a…
GitHub Enterprise accounts on github.com now enjoy higher hourly API rate limits for both GitHub Apps and OAuth Apps. OAuth Apps were increased to 15,000 API calls per hour from…
Last week, the Court of Justice of the European Union (CJEU) ruled the EU-US Privacy Shield, a mechanism governing personal data transfers from the EU to the US, is invalid due to concerns…
You can now sign up for Sponsors if you have a bank account in Malta or any of the other regions where Sponsors is available. Not in a supported region?…
GitHub stores your source code, releases, and a vast amount of invaluable information in issues and pull requests. While GitHub Enterprise Server (GHES), our self hosted solution, provides great security by default, administrators can take additional steps to further harden their appliance. This post will guide you through the most important settings.
GitHub dependency insights helps both developers and security teams manage their open source security with confidence—automatically compiling relevant CVE information, aiding in OSS license compliance, and helping them better understand their OSS dependency versions.
We have introduced the ability for enterprises to enable or disable GitHub Actions for specific organizations. GitHub organization admins can also opt in or opt out specific repositories from using…
What is the Availability Report? Historically, GitHub has published post-incident reviews for major incidents that impact service availability. Whether we’re sharing new investments to infrastructure or detailing site downtimes, our…
In this post I’ll show how input validation which should be used to prevent malformed inputs to enter our applications, open up the doors to Remote Code Execution (RCE).
Authentication is a critical component to your daily development. When working in open source, you need to prove that you have rights to update a branch with git push. Additionally…
Leia este artigo em português Sabemos como a aprendizagem é importante para o seu sucesso na utilização do GitHub. Quando você estiver usando nossos produtos, esperamos que você se sinta…
Now you can create custom workflow templates to promote best practices and consistency across your organization.
This post details how an open source supply chain malware spread through build artifacts. 26 open source projects were backdoored by this malware and were actively serving backdoored code.
Traditional in-office teams share how they are adjusting to remote life
We now automatically expire enterprise cloud account invitations for enterprise owner and billing manager roles seven days after the invitation is created. This update matches the automatic invitation expiration policy…
We examine the dangers of network integer arithmetic based on a case study of security vulnerabilities reported to the ntop project.
Have your team join Homebrew and JuliaLang, along with over 500 other organizations, in sponsoring open source projects, and the people behind them.
As a sponsored developer or organization, you can now select the public repositories to showcase on your GitHub Sponsors profile. Previously, your pinned repositories were displayed on your sponsorship profile.…
Team sync support for Okta is now in limited beta for GitHub Enterprise Cloud customers. Team sync allows GitHub.com organizations to sync Okta groups’ members to teams in GitHub. To…
Following the 2019 Octoverse report, this latest article provides trends and insights into developer activity on GitHub in the early days of COVID-19.
In this post I’ll show how garbage collections (GC) in Chrome may be triggered with small memory allocations in unexpected places, which was then used to cause a use-after-free bug.
Build what’s next on GitHub, the place for anyone from anywhere to build anything.
Last chance: Save $700 on your IRL pass to Universe and join us on Oct. 28-29 in San Francisco.