Code scanning is now more adaptable to your codebase with CodeQL threat model settings for Java (beta)
Code scanning is now more adaptable to your codebase with CodeQL threat model settings for Java (beta)
Code scanning is now more adaptable to your codebase with CodeQL threat model settings for Java (beta)
New Markdown extension: Alerts provide distinctive styling for significant content
Learn about how we run a scalable vulnerability management program built on top of GitHub.
Learn how researchers and security experts at GitHub, Microsoft, and Santander came together to address the challenges presented by the post-quantum cryptography world.
Shortly after releasing Copilot content exclusions on November 8, 2023, our team observed that the feature was causing clients to be incorrectly blocked from using Copilot. This necessitated an immediate…
Requiring workflows with rulesets now supports the pull_request_target trigger
We’re excited to share with you the contributors Action! At GitHub, we maintain several open source repositories and have developed this Action to empower maintainers to measure how many new and returning contributors and contributions have occurred over any given time period.
Requiring workflows with Repository Rules is generally available
Open source generative AI projects are a great way to build new AI-powered features and apps.
Game Bytes is our monthly series taking a peek at the world of gamedev on GitHub—featuring game engine updates, game jam details, open source games, mods, maps, and more. Game on!
In this post, I’ll exploit CVE-2023-3420, a type confusion in Chrome that allows remote code execution (RCE) in the renderer sandbox of Chrome by a single visit to a malicious site.
Dependency review support for dependency submission results
Rust continues to top the charts as the most admired and desired language by developers, and in this post, we dive a little deeper into how (and why) Rust is stealing the hearts of developers around the world.
Secret scanning token validation events now in the audit log
Sudo mode now applies to the administrator account for an Enterprise Managed User enterprise
GitHub’s design experts share 10 tips and lessons for designing magical user experiences for AI applications and AI coding tools.
Code scanning default setup is now available for Swift
This blog post describes two security vulnerabilities in Decidim, a digital platform for citizen participation. Both vulnerabilities were addressed by the Decidim team with corresponding update releases for the supported versions in May 2023.
Game Bytes is our monthly series taking a peek at the world of gamedev on GitHub—featuring game engine updates, game jam details, open source games, mods, maps, and more. Game on!
Select a query suite when enabling code scanning with default setup at the organization level
Build what’s next on GitHub, the place for anyone from anywhere to build anything.
Get tickets to the 10th anniversary of our global developer event on AI, DevEx, and security.