GitHub Security Lab’s mission is to inspire and enable the community to secure the open source software we all depend on.

Filter
Exclude
Time range
-
Minimum likes
Find the GitHub Security Lab now on LinkedIn, Mastodon and Bluesky! 👇
7
5
9
7,834
How to secure your GitHub Actions workflows with CodeQL. Dive into this actionable supply chain security research from @pwntester . This work resulted in dozens of high impact supply chain findings and, most importantly, added CodeQL support for your GitHub workflows! github.blog/security/applica…
6
15
53
5,773
🎉 Excited to announce the launch of CodeQL Community Packs for Security teams and researchers! 🚀 Supercharge your code analysis with new Query, Model, and Library packs, to find more vulnerabilities, accelerate codebases audit, and secure code effortlessly. github.blog/security/vulnera…
1
12
38
5,025
🚨 Over 20 new GStreamer security advisories are live! Huge thanks to the @gstreamer team for fixing these vulnerabilities and to @Nosoynadiemas for his valuable contributions. Learn more: securitylab.github.com/advis…
5
9
1,422
🚀 Level up your CodeQL skills! In Part 4 of @BlazingWindSec's "Zero to Hero" series, we dive into @HuggingFace’s Gradio framework—showing how to uncover vulnerabilities with real-world insights. Ready to explore? 🛠️🔍 👉 github.blog/security/vulnera… #CodeQL #BugBounty #OpenSourceSecurity
11
52
25,180
Excited to see @blazingwindsec recognized in @freeCodeCamp's Security Hall of Fame for uncovering and reporting a security vulnerability in their demo projects. 🎉 Her work helps keep open source safer for everyone! Check it out: contribute.freecodecamp.org/…
1
8
1,195