Comcast is releasing a new software tool, xGitGuard, as an open source project to the community at large. The tool is designed to proactively search the open source repositories of GitHub for code that was supposed to remain proprietary.
The idea behind xGitGuard is to provide an automated method of checking through GitHub repositories for code that shouldn’t be there — an important consideration for modern development teams, given the increasing usage of open source code. The tool uses NLP (natural language processing) technology, AI modeling and other advanced techniques to programmatically identify and validate secret code on GitHub, as well as identifying which developer accounts posted those secrets.
More Stories
US Blocks Foreign Governments from Acquiring Citizen Data
The US government has implemented a program that applies export controls on data transactions to certain countries of concern, including...
China Sort of Admits to Being Behind Volt Typhoon
The Wall Street Journal has the story: Chinese officials acknowledged in a secret December meeting that Beijing was behind a...
Digital Certificate Lifespans to Fall to 47 Days by 2029
CA/Browser Forum members have voted in favor of shortening TLS/SSL certificate lifespans to 47 days Read More
AI Hallucinations Create “Slopsquatting” Supply Chain Threat
Experts have warned that threat actors could hijack AI hallucinations in “slopsquatting” attacks Read More
Medusa ransomware gang claims to have hacked NASCAR
Read more in my article on the Hot for Security blog. Read More
NVD Revamps Operations as Vulnerability Reporting Surges
The NVD program manager has announced undergoing process improvements to catch up with its growing vulnerability backlog Read More