Security News

WhiteSource Bolt for GitHub: Free Open Source Vulnerability Management App for Developers
2018-12-05 11:48

Developers around the world depend on open source components to build their software products. According to industry estimates, open source components account for 60-80% of the code base in modern...

We don' need no stinkin' bounties: VirtualBox guest-to-host escape zero-day lands at GitHub
2018-11-07 11:50

Bug hunter rages at wearisome disclosure process An infosec researcher has expressed his frustration with disclosure processes by going public with a zero-day in VirtualBox, Oracle's open-source...

Code of App Security Tool Posted to GitHub
2018-08-20 13:19

Code of DexGuard, software designed to secure Android applications and software development kits (SDKs), was removed from GitHub last week, after being illegally posted on the platform. read more

Leaked GitHub API Token Exposed Homebrew Software Repositories
2018-08-09 13:50

A GitHub API token leaked from Homebrew’s Jenkins provided a security researcher with access to core Homebrew software repositories (repos). read more

Snapchat source code leaked on GitHub – but no one knows why
2018-08-08 15:38

What just befell a "small" piece of SnapChat’s source code, and should users be concerned?

Snapchat Hack — Hacker Leaked Snapchat Source Code On GitHub
2018-08-08 10:48

The source code of the popular social media app Snapchat was recently surfaced online after a hacker leaked and posted it on the Microsoft-owned code repository GitHub. A GitHub account under the...

GitHub to Warn Users on Compromised Passwords
2018-08-06 13:47

In a move to protect its users, software repository site GitHub is now alerting account holders whenever it detects that a password has been compromised in breaches on other services. read more

GitHub adds Pyhon support for security alerts
2018-07-17 19:39

GitHub has announced that its recently introduced feature for alerting developers about known vulnerabilities in software packages that their projects depend on will now also work for Python...

GitHub to Pythonistas: Let us save you from vulnerable code
2018-07-16 07:30

Third language added to security scanner GitHub's added Python to the list of programming languages it can auto-scan for known vulnerabilities.…

Support for Python Packages Added to GitHub Security Alerts
2018-07-13 12:23

GitHub announced on Thursday that developers will be warned if the Python packages used by their applications are affected by known vulnerabilities. read more