Opens profile photo
Follow
GitHub Security
@GitHubSecurity
GitHub's Security Team.
Everywhere software is builtgithub.com/securityJoined July 2013

GitHub Security’s Tweets

Sign-ups are open if you want to take advantage of Blue Team Con’s Career Village. Experienced hiring managers are ready to help you via resume reviews, mock interviews, and/or giving general career advice. Book a slot today!
Quote Tweet
Need resume help? Want to perform better in interviews? Today is your lucky day! Sign up is OPEN for the Career Village at @BlueTeamCon 2022! Village is in person only and you'll need to bring a laptop, tablet, or printed copy of your resume. docs.google.com/forms/d/1DnuJe
11
The Wellness Village (Presented by and Sponsored by ) will have four mental health talks on Saturday, August 27th. These discussions will be held in the village in a comfortable setting. Please see their talk schedule here:
5
GitHubSecurity's second report disclosed on HackerOne: Delimiter injection in GitHub Actions core.exportVariable hackerone.com/reports/1625652
Quote Tweet
We are excited to announce a new step for our bug bounty program. Going forward we will be publishing reports that get assigned a CVE (limited disclosure on @HackerOne)! Find our first report (and future ones!) on our Bounty page: hackerone.com/github/hacktiv #GitHubBugBounty
11

Topics to follow

Sign up to get Tweets about the Topics you follow in your Home timeline.

Carousel

GitHub is committed to protecting developer privacy, taking action on abusive content, and being transparent with developers about content moderation, and disclosure of user information. See our latest transparency report:
6
Excellent volunteer opportunity to support growth and encourage new folks to join our industry!
Quote Tweet
The Career Village is still looking for volunteers to help review resumes, conduct mock interviews, and/or give career advice. Please fill out the form at btcon.link/CareerVillage if you are interested.
9
🚨Village Alert🚨 The Childcare Village has been reopened for tickets. Bringing children and need them watched while you see talks, eat, or mingle? The Childcare Village is here for you and is FREE! Add-on tickets available on Eventbrite. More here:
7
Congratulations to all the winners and special shoutout to our very own Nancy Gariché, OWASP Project Person of the Year!
Quote Tweet
The results are in and the winners of the 2022 OWASP Waspy Awards are: owasp.org/awards/ Chapter - Thomas Ljungberg Kristensen Event - Izar Tarandach Project - Nancy Gariche Congratulations to the winners and thank you for your continued support of OWASP.
Image
4
22
A well-tuned and secure CI/CD workflow is a critical component for development teams looking to build more and ship fast. With Dependabot alerts on vulnerable GitHub Actions, securing your workflows has never been easier.
12
GitHub is investigating the Tweet published Wed, Aug. 3, 2022: * No repositories were compromised * Malicious code was posted to cloned repositories, not the repositories themselves * The clones were quarantined and there was no evident compromise of GitHub or maintainer accounts
12
2,350
🐰🐇🐰🐇 New month means it's time for our latest GitHub Security Bug Bounty report! July bug bounty stats: Closed 146 reports 💰Awarded $4,200 in bounties 👫101 hackers participated in our program
1
16
This requirement still stands and will for Blue Team Con 2022. Please bring vaccination proof to show at registration and plan to wear a mask in the conference areas.
Quote Tweet
Blue Team Con 2022 will require: - Full vaccination as per CDC guidelines for any authorized ages; and - Masks will be required to be worn throughout the entire conference at all times, except while eating and drinking or if you are a speaker and are currently presenting.
Image
3
59
Deprecation alert
Quote Tweet
GitHub Actions The macOS 10.15 Actions runner image is being deprecated and will be removed by 8/30/22 github.blog/changelog/2022
6
Very happy to be sponsoring Childcare Village
Quote Tweet
A reminder of our FREE childcare village (well, $5/day to ensure serious purchases and as part of the sitters’ tip). There are VERY limited spots left. Ensure to snag them now if you are interested. Blue Team Con is dedicated to being a family-friendly event. See @Hak4Kidz too! twitter.com/BlueTeamCon/st…
Show this thread
12
Here are June's GitHub Security bug bounty stats: Closed 104 reports 💰Awarded $10,100 in bounties 👫87 hackers participated in our program Yes, these stats LOOK a little low compared to last month (twitter.com/GitHubSecurity) as our focus was on our Live Hacking Event...
Quote Tweet
With a total of 176 bounty reports submitted, May was close to beating our record 182 reports submitted in March! Here are our May bug bounty stats: ✅ Closed 155 reports 💰 Awarded $30,519 in bounties 👫 128 hackers participated in our program
Show this thread
1
8
Show this thread