
How to stay safe from repo-jacking
Repo-jacking is a specific type of supply chain attack. This blog post explains what it is, what the risk is, and what you can do to stay safe.
Repo-jacking is a specific type of supply chain attack. This blog post explains what it is, what the risk is, and what you can do to stay safe.
Get excited for this month’s Release Radar. Maintainers were hard at work this past month, shipping major updates for you all. Read on for our top staff picks.
Celebrate the first year of GitHub Fund, our first investments, and a brief look of where we’re going.
Our latest solution to the ubiquitous engineering problem of integration testing in a distributed service ecosystem here at GitHub.
Explore what flow state entails, its benefits, and three tips for reaching it the next time you code.
GitHub received a bug bounty report of a vulnerability that allowed access to the environment variables of a production container. We have patched GitHub.com and rotated all affected credentials. If you have hardcoded or cached a public key owned by GitHub, read on to ensure your systems continue working with the new keys.
During the second cycle of Git Commit Uruguay, students learned the basics of AI and built their own AI-powered projects.
When socializing a new security tool, it IS possible to build a bottom-up security culture where engineering has a seat at the table. Let’s explore some effective strategies witnessed by the GitHub technical sales team to make this shift successful.
Take CODEOWNERS and GitHub teams to the next level. Learn about how GitHub engineering solves the age old problem of who owns what.
Read a round-up of the exciting, new innovation coming from GitHub Enterprise.
We listened to your feedback and released new versions (v4) of actions/upload-artifact and actions/download-artifact. While this version of the artifact actions includes up to 10x performance improvements and several new…
GitHub Enterprise Server 3.11 is generally available GitHub Enterprise Server 3.11 is now generally available. With this version, customers have access to tools and features that provide a better understanding…
Discover new AI-powered features and tools to help developers stay in the flow and organizations innovate at scale.
The GitHub Enterprise Server 3.11 release candidate is here GitHub Enterprise Server 3.11 gives customers more visibility of their instance. Here are some highlights: Code scanning’s default setup now does…
In this year’s Octoverse report, we study how open source activity around AI, the cloud, and Git are changing the developer experience.
We’re excited to highlight another top contributing researcher to GitHub’s Bug Bounty Program—@Ammar Askar!
We’re excited to share with you the contributors Action! At GitHub, we maintain several open source repositories and have developed this Action to empower maintainers to measure how many new and returning contributors and contributions have occurred over any given time period.
Gain actionable insights about the intersection of AI and human skills, while tackling ethics, accessibility, and productivity at these GitHub Universe sessions.
Atlassian is ending support for its Server products—including Bitbucket Server—in February 2024. In this post, you’ll learn what that means for you, your options, and how you can move to GitHub.
Use our new open source Trace2 receiver component and OpenTelemetry to capture and visualize telemetry from your Git commands.
In September, we experienced two incidents that resulted in degraded performance across GitHub services.
Build what’s next on GitHub, the place for anyone from anywhere to build anything.
Last chance: Save $700 on your IRL pass to Universe and join us on Oct. 28-29 in San Francisco.