Semmle

395 posts

Semmle banner
Semmle

Semmle

@Semmle

Semmle has joined GitHub. Finding zero-days and automating variant analysis | Creators of CodeQL and @LGTM

San Francisco, CA Katılım Şubat 2016
20 Takip Edilen1.7K Takipçiler
Sabitlenmiş Tweet
Semmle
Semmle@Semmle·
Big news! Semmle is joining the @Github team to bring community-powered security analysis to millions of developers. Learn more from Semmle CEO @oegerikus here: hubs.ly/H0kQZ2y0
English
4
59
153
0
Semmle retweetledi
GitHub Security Lab
GitHub Security Lab@GHSecurityLab·
ICYMI: We're running a CTF until December 31st. Write a CodeQL query to find a specific class of DOM-based XSS vulns. The 2 best submissions will win Nintendo Switches, and 10 additional entries will receive coupons that can be used for GitHub Swag. securitylab.github.com/ctf/jquery
English
1
18
56
0
Semmle retweetledi
GitHub Security Lab
GitHub Security Lab@GHSecurityLab·
We've just launched a new slack workspace for anyone interested in being part of the mission to secure the open source software we all depend on. ghsecuritylab.slack.com If you'd like to receive an invitation to join the workspace, send us a DM with your email address.
English
1
22
45
0
Semmle
Semmle@Semmle·
Want to learn more about QL and how you can use it to find variants of vulnerabilities in your code? Join us for our Semmle User Group this Wednesday night at Mozilla. See the event details for more information. meetup.com/Semmle-San-Fra…
English
0
2
4
0
Semmle
Semmle@Semmle·
Wondering how @fjserna found 13 CVEs in U-boot? Watch his #BlackHat presentation "Using One Exploitable Zero-Day to Eradicate an Entire Class of Vulnerabilities" on-demand: hubs.ly/H0l0c_V0
English
0
1
7
0
Semmle
Semmle@Semmle·
Is your code VUCA (Volatile, Uncertain, Complex, Ambiguous)? Let's see how the OODA Loops theory inspires our code review practices. hubs.ly/H0l0c_y0
English
0
0
2
0
Semmle
Semmle@Semmle·
In this video, @kevin_backhouse discusses the libssh2 integer overflows and out-of-bounds read he recently discovered. See how it can be triggered by connecting to a malicious ssh server hubs.ly/H0l094z0
English
0
0
5
0
Semmle
Semmle@Semmle·
Imagine if your dev team could have automated code review powered by security expertise? Tomorrow, join @oegerikus and @fjserna to see how community-powered security can become a part of the developer’s workflow. hubs.ly/H0l092P0
English
0
0
0
0
Semmle
Semmle@Semmle·
Are unit tests really effective in preventing bugs? We analyzed over 50k LGTM projects in Java, Python, and Javascript to find out. hubs.ly/H0l17-D0
English
0
0
1
0
Semmle retweetledi
LGTM
LGTM@LGTM·
Now in beta! LGTM is supporting Golang and we have some projects that you can explore. Check them out and suggest others you'd like us to analyze. hubs.ly/H0l167w0
English
0
5
10
0
Semmle retweetledi
Ekoparty | Hacking everything
Un honor tener a @nicowaisman en la eko, esta vez con su workshop "Cazando bugs con redes de pesca". Aprendimos cómo modelar bugs para encontrar vulnerabilidades 🎣 . Such an honor to have @nicowaisman at ekoparty, this time with his workshop "Hunting bugs with fishing nets" 🎣
Ekoparty | Hacking everything tweet mediaEkoparty | Hacking everything tweet media
Español
1
5
24
0
Semmle
Semmle@Semmle·
Imagine if your dev team could have automated code review powered by security expertise? Join @oegerikus and @fjserna as they share their vision for community-powered secure development: hubs.ly/H0kZ9290
Semmle tweet media
English
0
0
1
0