
Improvements to GitHub Advanced Security billing pages
Improvements to GitHub Advanced Security billing pages
GitHub Blog Search
Improvements to GitHub Advanced Security billing pages
Organization-level security risk and coverage pages replace overview page
Incremental improvements on security advisory form
Dependabot now supports security updates for Dart and Flutter apps that use Pub packages
Dependabot security updates now supports GitHub Actions
Feature enablement from the organization-level security coverage page
Risk and coverage views on the Security tab for organizations (public beta)
We think a lot about a high-profile supply chain attack that might cause developers, teams, and organizations to lose trust in open source. That’s why we’re investing in new ways to protect the open source ecosystem.
Security policy highlighted on repository overview
A glimpse into the backgrounds and day-to-day work of several GitHub employees in cybersecurity roles.
Yellow security vulnerability repository banner is being removed
As we wrap up Cybersecurity Awareness Month, the GitHub bug bounty team is excited to spotlight one of the security researchers who participates in the GitHub Security Bug Bounty Program.
The GitHub Security Lab provided office hours for open source projects looking to improve their security posture and reduce the risk of breach. Here’s what we learned and how you can also participate.
Dependabot can now generate security and version updates for Yarn v2 and v3
Upgrade your local installation of Git, especially when cloning with --recurse-submodules from untrusted repositories, or if you use git shell interactive mode.
Having a robust security plan is key to innovation. These tips will empower you to gain the upper hand on cyberattacks, so you can ship quickly and innovate with ease.
Learn about using GitHub Advanced Security (GHAS) alerts with Security Information and Events Management (SIEM) tools. Check out the integrations, and read more about getting started.
Cross-platform apps built with the popular Flutter toolkit can now benefit from Dependabot alerts.
Learn how you can seamlessly define trusted custom secret patterns to detect secrets unique to your organization with GitHub Advanced Security.
Dependabot security updates removes unneeded transitive dependencies