GitLab
Follow
5 things to know from our LinkedIn Live Security Deep Dive
GitLab's October LinkedIn Live broadcast discussed the latest developments in application security and highlighted key features from the GitLab 17.5 release. Development teams are shipping code at record speeds, but security teams are struggling to keep up, with 66% of companies shipping code twice as fast as last year and 55% of security teams finding vulnerabilities after code is merged to test environments. Advanced SAST capabilities are now smarter, offering cross-file and cross-function scanning with taint analysis and a code flow view that lets developers trace vulnerabilities from source to sink. A new secret push protection feature stops sensitive information from reaching GitLab repositories by checking the contents of each commit. AI is evolving to understand merge requests and provide contextual security assistance, with the new Quick Chat feature accessible via Alt+C. The new static reachability feature for Python and Java helps teams focus on vulnerabilities that matter by identifying which dependencies are actually used in the code, reducing false positives and helping teams prioritize real security threats. The full "Security Deep Dive" recording is available on-demand, showcasing these features in action and providing insights from security experts. It's recommended to follow GitLab on LinkedIn for monthly broadcasts and the latest news about AI-powered DevSecOps.