Microsoft Copilot continues to expose private GitHub repositories

In August 2024, a LinkedIn post caused alarm by alleging that ChatGPT (and, by association, Microsoft Copilot) was capable of accessing data from private GitHub repositories. Such a claim, if true, could have significant ramifications for data security and privacy. Eager to uncover the truth behind the claim, the research team at Lasso, a digital… …

Developers are embracing AI agents for software development

Developers worldwide are embracing AI agents in software development with overwhelming enthusiasm, according to research from Salesforce. According to Salesforce’s latest State of IT survey, an impressive 96% of developers globally believe AI agents will positively reshape the developer experience, with more than nine in ten excited about AI’s impact on their careers. Closer to… …

AI coding tools: Productivity gains, security pains

Apiiro has provided insights into how generative AI coding tools are accelerating development while simultaneously increasing security risks. This research found that generative AI tools have supercharged coding velocity while putting sensitive data like Personally Identifiable Information (PII) and payment details at significant risk. As organisations increasingly adopt AI-driven development workflows, the need for robust… …

Kubescape achieves CNCF milestone in open source Kubernetes security

A cloud runtime security company, ARMO, has announced the promotion of its Kubescape platform to an ‘incubating’ project status by the CNCF (Cloud Native Computing Foundation). The promotion is validation of Kubescape’s growing adoption, maturity, and value to the cloud native security and DevOps community. Kubescape entered the CNCF Sandbox in 2022, and was the… …

Google unveils free Gemini AI coding tools for developers 

Google Cloud is rolling out free Gemini AI coding and code review tools to software developers across the globe. The tech giant has announced the public preview of Gemini Code Assist for individuals and Gemini Code Assist for GitHub. According to Google, this launch aims to enable anyone – from students working on academic projects… …

AI and its impact on software development jobs

Debates around the jobs impact of AI on industries are no longer confined to niche circles, with software development often at the forefront. The launch of ChatGPT by OpenAI catapulted AI into the mainstream, offering millions of users an accessible way to interact with a natural language processing tool capable of human-like conversations. Its release… …

Rust for Linux: Safety gains vs maintainability fears

The Linux kernel community is embroiled in a heated debate over the integration of Rust code, with contributors clashing over safety benefits, maintainability challenges, and the potential risks of a multi-language codebase. The discussion, sparked by a policy document published by Rust for Linux lead developer Miguel Ojeda, highlights growing tensions between advocates of memory-safe… …

Rust 1.85.0 released, 2024 Edition stabilised

The Rust programming language has reached another milestone with the release of 1.85.0 alongside the stabilisation of the 2024 Edition. Rust – which is regularly crowned as the “most loved” programming language – continues to empower developers with its reliability, efficiency, and modern development features.   The latest release delivers a host of updates across the… …

Matan Giladi, Apiiro: Guarding your code against malicious patterns

Malicious code is proving as persistent a threat as ever, despite years of awareness campaigns and ongoing incidents that demonstrate the vulnerabilities in software supply chains. This year, Apiiro’s security research teams detected and analysed thousands of malicious code instances found in repositories and packages. What’s alarming is the ease with which these attacks exploit… …