Congrats to our CTF challenge winners @l4wio and @zlowram_! These intrepid developers tested their vulnerability hunting skills by writing QL queries on the U-Boot code base https://t.co/ZxwPG0bA9O
Imagine if your dev team could have automated code review powered by security expertise? Join @oegerikus and @fjserna to see how community-powered security can become a part of the developer’s workflow. https://t.co/5QffdiDBPS
Big news! Semmle is joining the @Github team to bring community-powered security analysis to millions of developers. Learn more from Semmle CEO @oegerikus here: https://t.co/iDN5RrY8J1
In this video, @kevin_backhouse discusses the libssh2 integer overflows and out-of-bounds read he recently discovered. See how it can be triggered by connecting to a malicious ssh server. https://t.co/27wqUF4bLg
Semmle security researcher @mmolgtm looks at common Java #deserialization vulnerabilities in leading in-memory data grid applications. See how he found them with #SemmleQL https://t.co/zzObGmINCk
Do you leave your codebase cleaner than you found it? Our data science team analyzes LGTM to determine when developers actually follow #CleanCode principles. https://t.co/qnvNx8XYx2
In case you missed us at #BlackHat2019, check out the recap of @fjserna's preso on finding vulns in Das U-Boot, @baron_von_ryan's #SemmleCTF challenge, and the penthouse party with our friends from @IOActive https://t.co/L3GmmACJoj
There is a reason for the fighter plane picture! Read this article from @XCorail to find out how the war-inspired acronym VUCA relates to the typical coding environment
Is your code VUCA (Volatile, Uncertain, Complex, Ambiguous)? Let's see how the OODA Loops theory inspires our code review practices. https://t.co/K4iGgw4gzG
See how you can use a known #vulnerability to find entire classes of that bug in your code base. Read about it on the blog. #securecode#variantanalysis https://t.co/yKmQTZgh8R
.@Nosoynadiemas from @semmle security research team discovers 11 bugs in VLC. The most critical could be used to run arbitrary code on a victim's computer. Get details here: https://t.co/So5pO833i1
Can automated tests actually harm your Javascript, Python, or Java code? We look at thousands of LGTM projects to determine how to avoid negative side effects and enjoy the benefits of test code. https://t.co/GI9zMEMkIA
Test your vulnerability hunting skills on a real code base at #BlackHat 2019. Find variants of a known vulnerability for your chance to win a pair of Bose headphones and other cool prizes. Visit @semmle at Booth IC2112 https://t.co/piCrCmqCop #SemmleCTF
I'll be at the @Semmle booth IC2112 most of the day on Wed and Thu of #Blackhat2019. If you would like to see a 5-minute QL demo, or would just like to talk about bugs, then stop by any time.
Vegas goers - join @Semmle for a happy hour high in the sky on Wednesday August 7th. Surprise fun will ensue :) https://t.co/mEE6Aq3dnM #hackersummercamp
#Semmle is committed to community-driven security analysis and securing Open Source software for it's users. We would love to hear from any #travisAlums keen to come and help - check out our careers page at https://t.co/Q1xdpoMrml