Security alerts tool trends on the security overview dashboard
Security alerts tool trends on the security overview dashboard
Security alerts tool trends on the security overview dashboard
Learn how to use CodeQL for security research and improve your security research workflow.
Enterprise enablement trends for security products (public beta)
Advanced filtering capabilities for the security overview dashboard
This blog post is an in-depth walkthrough on how we perform security research leveraging GitHub features, including code scanning, CodeQL, and Codespaces.
GitHub-hosted runners now support Azure private networking. Plus, we’ve added 2 vCPU Linux, 4 vCPU Windows, macOS L, macOS XL, and GPU hosted runners to our runner fleet.
Code security configurations let organizations easily roll out GitHub security products at scale
Dependabot grouped security updates generally available
Improvements to security overview insights, secret scanning metrics
Security overview dashboard: Alert age trends, custom repository and severity filters, and date pickers
Enablement trends for security products (public beta)
Dependabot security updates work with private registries even if target branch is specified
Group Configuration Options for Dependabot Security Updates – Public Beta
CodeQL 2.16.3: AI-powered autofixes for Python, updated queries, and security fixes
Learn to find and fix security issues while having fun with Secure Code Game, now with new challenges focusing on JavaScript, Python, Go, and GitHub Actions!
A peek under the hood of GitHub Advanced Security code scanning autofix.
The Fundamentals program has helped us address tech debt, improve reliability, and enhance observability of our engineering systems.
When socializing a new security tool, it IS possible to build a bottom-up security culture where engineering has a seat at the table. Let’s explore some effective strategies witnessed by the GitHub technical sales team to make this shift successful.
As of February 15th, 2024, you will no longer be able to create security advisories in private repositories. Formerly published advisories will no longer be available. This change does not…
Improve your GitHub Action’s security posture by securing your source repository, protecting your maintainers, and making it easy to report security incidents.
Build what’s next on GitHub, the place for anyone from anywhere to build anything.