Security
GitHub
Mon Feb 12 2024
The architecture of SAST tools: An explainer for developers
More developers will have to fix security issues in the age of shifting left.
Tue Feb 06 2024
AppSec is harder than you think. Here’s how AI can help.
In practice, shifting left has been more about shifting the burden rather than the ability.
Tue Sep 12 2023
CodeQL team uses AI to power vulnerability detection in code
Learn how GitHub’s CodeQL leveraged AI modeling and multi-repository variant analysis to discover a new CVE in Gradle.
Engineering@Microsoft
Microsoft
Mon Sep 27 2021
Caesar, standards, and SAST: The road to SARIF
In this post, Michael Fanning gives us a short history on standards (think Julius Caesar), how consensus on something very small can enable ...