GitLab Advanced SAST is now generally available
Blog post from GitLab
GitLab has launched its Advanced Static Application Security Testing (SAST) scanner for all Ultimate customers, leveraging technology acquired from Oxeye to enhance security measures within the GitLab DevSecOps platform. This new scanner is designed to detect exploitable vulnerabilities with higher accuracy and fewer false positives by using a proprietary detection engine informed by in-house security research. Unlike other standalone security tools, Advanced SAST is seamlessly integrated into the developer workflow, enabling faster remediation through contextual insights and reducing the need for multiple point solutions. The scanner aims to address the increasing pace of application development, which has resulted in more frequent software releases but also heightened security risks, as evidenced by a significant number of data breaches occurring at the application layer. GitLab's Advanced SAST is available in version 17.3 or newer but is initially disabled by default, allowing users to coordinate its rollout, with plans to enable it by default in future releases. The company is also working on expanding language support and implementing features like real-time SAST scanning and incremental scanning to further enhance security within the software development lifecycle.
| Trend | Post Mentions | Total Month Mentions | Posts | Companies | MoM |
|---|---|---|---|---|---|
| Developer Experience | 1 | 286 | 160 | 88 | -13% |
| Real-time | 1 | 4,377 | 976 | 225 | +49% |
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.