Filter
Exclude
Time range
-
Near
30 Jul 2025
Secure More, Lose Less - The AgentLISA Advantage in Smart Contract Security. Every exploit below could have been caught by #AgentLISA's security analysis before deployment. In #Web3, the cost of inadequate security isn't just reputation—it's everything. Secure your protocol with #AgentLISA before you go live, because prevention costs far less than recovery. Secure your Solidity code while you code. Try it now: agentlisa.ai/could-have-been… #AgentLISA #VSCodeExtension #SoliditySecurity #Web3Dev #SmartContractTools #DevSecOps #CodeScanning #BlockchainDev #SmartContractSecurity #DeveloperTools #SecurityAnalysis #Blockchain #OpenSource #PrivacyFirst #SecurityMatters
1
6
4,333
12 Jul 2025
Detecting Hard-Coded Credentials in Software Repositories via LLMs - arxiv.org/pdf/2506.13090 Software developers frequently hard-code credentials such as passwords, generic secrets, private keys, and generic tokens in software repositories, even though it is strictly advised against due to the severe threat to the security of the software. These credentials create attack surfaces exploitable by a potential adversary to conduct malicious exploits such as backdoor attacks. Recent detection efforts utilize embedding models to vectorize textual credentials before passing them to classifiers for predictions. #HardcodedSecrets #CredentialLeak #LLMSecurity #CodeScanning #AIinSecurity #SoftwareSecurity #TokenDetection #BackdoorRisk #SecureCoding #SecretDetection #GPTSecurity #LLMDetection #CodeVulnerabilities #AIStaticAnalysis #CredentialHunting #RepoSecurity #DevSecOps #SecureDev #AI4Code #PLMSecurity
6
149
10 Mar 2025
Are you tired of wasting time on false positives flagged by traditional static analysis tools? 🤔 Join us tomorrow, March 11th at 9 AM PT, to learn how Semgrep combines AI and static analysis to transform your code scanning process. 🔍 What you'll learn: ✅ How Semgrep Assistant reduces false positives with a 95% human agreement rate ✅ How this approach cuts triage efforts by 20% ✅ Why integrating AI into your security process makes shift-left more practical for AppSec and developers 🔗 Register Now: semgrep.dev/events/ai-powere… #AI #Security #Semgrep #AppSec #LLMs #CodeScanning #DevSecOps
1
143
#CopilotWorkspace brings #Copilot into a task-centric dev environment, allowing you to move from Task, Spec, Plan to Code Check out my run-through from issue to PR (with #Actions and #CodeScanning) in the video below 👇 #GitHubCopilot @GitHubNext youtube.com/watch?v=L5Xny6ye…

1
3
8
1,878
🧑‍💻Autofix Automatically Fixes Your Code! @GitHub's new AI-powered code scanning autofix feature revolutionizes code security and development efficiency by automating code debugging. Know more: shorturl.at/ACVY4 #GitHub #AI #CodeScanning #Autofix #Developers #TechNews

3
299
The @GitHub Advanced Security for ⁦@AzureDevOps⁩ is now on GA. It is a new feature to configure security scanning of your code, dependencies and secrets in your pipelines and workflow. #azuredevops #devsecops #codescanning devblogs.microsoft.com/devop…

4
16
618
5 Aug 2023
GitHub CodeScanningのAWS Key検知も結局ただの正規表現なんだ ダミーに反応しちゃってる
7
2,280
12 Jun 2023
We shipped GitHub Advanced Security free trial 🚀 If you have #github Enterprise Cloud you can now try #secretscanning #codescanning for free ✨ github.blog/changelog/2023-0…

3
6
611
#AmazonInspector now supports code scanning of #AWSLambda functions (in preview), expanding the existing capability to scan Lambda functions. 🎞️ Watch the demo to learn how to activate this expanded #codescanning capability: go.aws/3AT4kZV
11
27
3,205
Excited for today's #privacyengineering panel with industry experts and thought leaders discussing data classification 📊🔐. Proud to sponsor the IAPP @PrivacyPros KnowledgeNet Meetup tonight 🎉🎊. Join us! #dataprivacy #machinelearning #codescanning
1
8
1,138
10 Jan 2023
News: With only a few clicks, developers can configure code scanning for a repository using the new default setup introduced by GitHub. Although GitHub’s code scanning is powered by the CodeQL… dlvr.it/SggSrs #Devops #coderepository #codescanning #GitHub Follow us now

3
4
229
With betterscan.io you can store state in Database (PostgreSQL, MySQL/MariaDB, Oracle, Microsoft SQL Server) or in you Git repo. Outputs in CLI, HTML, SARIF, JSON. This works nicely with GitHub Codescanning, GitLab Security and Compliance and Azure DevOps Server

1
2
Great read on how GitHub Advanced Security can help move towards DevSecOps with tools such as CodeScanning, CodeQL, Secret Scanning, and a unified view of the results close to the developers. @github, #advancedsecurity. nickliffen.dev/articles/why-…

5
8
17 Jun 2021
Looking for a security researcher! You'll help to generate automated code fixes for static analysis findings across a range of popular programming languages. Software development or SDLC experience a plus. veracode.com/job-post?gh_jid…
2
5 May 2021
This post will guide you through implementation of GitHub Advanced Security Code Scanning in an Azure DevOps CI pipeline with a node application using the YAML editor. hakin9.org/code-scanning-a-g… #hacking #azuredevops #cybersecurity #codescanning

1
5