Announcing the public preview of GitHub Advanced Security for Azure DevOps
Blog post from GitHub
Web applications play a crucial role in modern life, but their widespread use also makes them primary targets for cyberattacks, accounting for over 40% of data breaches. GitHub aims to enhance software innovation by ensuring security through GitHub Advanced Security (GHAS), which offers application security testing tools integrated seamlessly into the developer workflow. These tools, including secret scanning, dependency scanning, and code scanning, enable developers to address security vulnerabilities rapidly, significantly improving fix rates compared to industry norms. In 2022, GHAS helped users identify and fix millions of vulnerable packages and exposed secrets. With the public availability of GHAS on Azure DevOps, developers can access these security features without leaving their familiar environment, facilitating the detection and prevention of vulnerabilities in open-source packages and code across various programming languages.