MENU

Fun & Interesting

Found means fixed: Addressing security debt at scale

GitHub 1,509 6 months ago
Video Not Working? Fix It Now

Software vulnerabilities accumulate over time, creating security debt. While traditional AppSec tools identify issues, fixing them remains challenging due to limited expertise and time. This session with GitHub's Brittany O'Shea, director of product management, and Bryan Sullivan, senior director of product management, and Linda Fay, director, product security, Asurion, will explore how GitHub Advanced Security (GHAS), powered by GitHub Copilot, revolutionizes vulnerability remediation and security debt management. The speakers will showcase current capabilities that can help developers rapidly address vulnerabilities and preview upcoming Copilot Autofix expansions. Learn how these innovations can transform security practices, enabling efficient vulnerability management and proactive security debt reduction, encouraging developers to both build and run code, and help quickly and more easily secure it. #Security #GitHubUniverse #GitHub 0:00 - Introduction 2:29 - GitHub's Vision: AI for Security 3:17 - Real vs. Fake Password Game 5:43 - AI-Powered Secret Scanning 6:56 - Copilot Autofix for Pull Requests 13:09 - Security Campaigns for Priority Fixes 20:08 - Expanding Autofix Capabilities 26:28 - Dependabot and Major Version Updates 32:28 - Concluding Thoughts on AI Security Watch more videos from GitHub Universe 2024 here: https://www.youtube.com/watch?v=GhnCiV23PQE&list=PL0lo9MOBetEF_de7yKAWpnMkTsKH6aJ4P Stay up-to-date on all things GitHub by subscribing and following us at: YouTube: http://bit.ly/subgithub Blog: https://github.blog X: https://twitter.com/github LinkedIn: https://linkedin.com/company/github Instagram: https://www.instagram.com/github TikTok: https://www.tiktok.com/@github Facebook: https://www.facebook.com/GitHub/ About GitHub: It’s where over 100 million developers create, share, and ship the best code possible. It’s a place for anyone, from anywhere, to build anything—it’s where the world builds software. https://github.com

Comment