GitHub’s latest AI tool can automatically fix code vulnerabilities
ID: 673c2c30-a645-5955-8333-6ed4d5cd20e4
STIX ID: report--673c2c30-a645-5955-8333-6ed4d5cd20e4
Feed Name: TechCrunch Security News
GitHub announced a beta code-scanning autofix feature that integrates Copilot with the CodeQL semantic analysis engine to automatically detect and remediate security vulnerabilities in JavaScript, TypeScript, Java, and Python. Available to GitHub Advanced Security customers, the system uses heuristics, Copilot APIs, and GPT-4 to generate fixes and explanations, with GitHub claiming coverage of over 90% of alert types and successful remediation for more than two-thirds of findings, while noting a small percentage of incorrect suggestions.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
