GitHub rolls out new tool to fix code errors even before you see them
Date:
Fri, 16 Aug 2024 11:08:24 +0000
Description:
Copilot Autofix will address vulnerabilities by fixing code, and its set to roll out free to open source GitHub developers.
FULL STORY ======================================================================
GitHub has announced the general availability of Copilot Autofix within its GitHub Advanced Security (GHAS) suite, designed to prevent new
vulnerabilities from entering code before you even see them.
The tool, announced by Chief Security Officer Mike Hanley in a blog post , will also tackle existing vulnerabilities in code, which was previously unmanageable without automation.
Besides identifying code vulnerabilities, Copilot Autofix also promises to explain their significance and offer automated code suggestions to fix them. GitHub Copilot Autofix will fix your code for you
According to the companys research, the tool has already proven to be around three times more efficient than doing the process manually. Early adopters like Optum and Otto Group have also reported saving thousands of hours
monthly on remediation tasks.
Kevin Cooper, Principal Engineer at Optum, commented: Since implementing Copilot Autofix, we've observed a 60% reduction in the time spent on security-related code reviews and a 25% increase in overall development productivity.
In the announcement, Hanley was proud to highlight Copilot Autofixs ability
to address the backlog of security debt vulnerabilities that linger in software for extended periods, often going unnoticed. Tackling these types of vulnerabilities can significantly reduce the risk of costly security
breaches.
Hanley added: Vulnerabilities can live forever, and the longer theyve
remained dormant, the harder and more expensive they are to fix.
In addition to serving enterprise customers, GitHub will offer the tool to
the open-source community for no cost from September 2024. Maintainers will
be able to enhance the security of their own software, which aligns with the Microsoft-owned companys commitment to creating a safer software scene.
Hanley concluded by stating that AI agents can help relieve much of the
burden in a world of limited security talent, adding that Copilot Autofix
will help ensure that a vulnerability found means a vulnerability fixed. More from TechRadar Pro Like the tech? Here are the best AI tools and best AI writers Microsoft just gave GitHub a whole load of new Copilot tools Upgrade your device with one of the best laptops for programming
======================================================================
Link to news story:
https://www.techradar.com/pro/security/github-rolls-out-new-tool-to-fix-code-e rrors-even-before-you-see-them
--- Mystic BBS v1.12 A47 (Linux/64)
* Origin: tqwNet Technology News (1337:1/100)