News

GitHub has already published the full contents of the Advisory Database to encourage collaboration. Written by Jonathan Greig, Contributor Feb. 22, 2022, 9:08 a.m. PT ...
Additionally, new tools such as the GitHub Security Advisory, Security Vulnerability Alerts for Java and .NET and the Token Scanner for Public Repos will help automate security.
Microsoft, Mozilla, and Google are part of the GitHub Security Lab to protect open source code. CodeQL will be open-sourced to power the lab.