Measuring government policy on open source with a new dataset
Policymakers around the world are developing policies that impact how software gets built and who gets to build it, see the latest now.
Policymakers around the world are developing policies that impact how software gets built and who gets to build it, see the latest now.
CVE-2022-25664, a vulnerability in the Qualcomm Adreno GPU, can be used to leak large amounts of information to a malicious Android application. Learn more about how the vulnerability can be used to leak information in both the user space and kernel space level of pages, and how the GitHub Security Lab used the kernel space information leak to construct a KASLR bypass.
When you’re new to coding, it’s easy to get stuck completing endless tutorials. You can apply what you’ve learned (and learn even more) through GitHub Codespaces. The best part is you don’t need a powerful computer to get started.
GitHub Copilot boosts developer productivity, but using it responsibly still requires good developer and DevSecOps practices.
A look at what happened on January 30, what measures we’re putting in place to prevent surprises, and how we’ll handle future changes.
Learn about CodeQL's improved user experience and enhancements that let you scan new languages, detect new types of CWEs, and perform deeper analyses of your applications.
Looking back over a year’s worth of developer-first content moderation and, new in this report, making our data more accessible to researchers.
Git users are encouraged to upgrade to the latest version, especially if they use `git apply` or `git clone` against untrusted patches or repositories.
We’re launching new improvements to GitHub Copilot to make it more powerful and more responsive for developers.
GitHub Copilot is the world’s first at-scale AI developer tool and we’re now offering it to every developer, team, organization, and enterprise.

A look at what went into building the world's largest public code search index.
What if developers want to leverage branch deployments but don't have a full ChatOps stack integrated with their repositories? We wanted to set out to find a way for all developers to be able to take advantage of branch deployments with ease, right from their GitHub repository, and so the branch-deploy Action was born!
In January, we experienced two incidents, one that resulted in degraded performance for Packages and Pages and another that impacted Git users.
How Dependabot integrated with npm to address security vulnerabilities on transitive dependencies and increase the likelihood of success for JavaScript security updates by 40%.

When you’re new to coding, it’s easy to get stuck completing endless tutorials. You can apply what you’ve learned (and learn even more) through GitHub Codespaces. The best part is you don’t need a powerful computer to get started.
Welcome to our special edition of the Release Radar 🎄. Between Christmas festivities, end of the year parties, Chinese New Year, or simply enjoying some time off, almost everyone has…
We’ve got ten top games from the latest Ludum Dare game jam plus source code for you to check out. Pun intended.
The DEI Resource Hub is a vetted collection of resources, tools, and best practices designed to help open source maintainers create and maintain inclusive and diverse open source communities.
We are archiving Atom and all projects under the Atom organization for an official sunset on December 15, 2022.
GitHub Copilot boosts developer productivity, but using it responsibly still requires good developer and DevSecOps practices.
When you’re new to coding, it’s easy to get stuck completing endless tutorials. You can apply what you’ve learned (and learn even more) through GitHub Codespaces. The best part is you don’t need a powerful computer to get started.
A look at what went into building the world's largest public code search index.
GitHub Copilot is the world’s first at-scale AI developer tool and we’re now offering it to every developer, team, organization, and enterprise.
A look at what happened on January 30, what measures we’re putting in place to prevent surprises, and how we’ll handle future changes.

When you’re new to coding, it’s easy to get stuck completing endless tutorials. You can apply what you’ve learned (and learn even more) through GitHub Codespaces. The best part is you don’t need a powerful computer to get started.
A look at what happened on January 30, what measures we’re putting in place to prevent surprises, and how we’ll handle future changes.
We’re launching new improvements to GitHub Copilot to make it more powerful and more responsive for developers.
GitHub Copilot is the world’s first at-scale AI developer tool and we’re now offering it to every developer, team, organization, and enterprise.
Explore how the GitHub Docs team uses GitHub Projects for content coordination, reviews, and publishing.

How to tap into the power of GitHub Actions from anywhere with GitHub Mobile!

CVE-2022-25664, a vulnerability in the Qualcomm Adreno GPU, can be used to leak large amounts of information to a malicious Android application. Learn more about how the vulnerability can be used to leak information in both the user space and kernel space level of pages, and how the GitHub Security Lab used the kernel space information leak to construct a KASLR bypass.
Learn about CodeQL's improved user experience and enhancements that let you scan new languages, detect new types of CWEs, and perform deeper analyses of your applications.
Git users are encouraged to upgrade to the latest version, especially if they use `git apply` or `git clone` against untrusted patches or repositories.
Explore how GitHub Advanced Security can help address several of the OWASP Top 10 vulnerabilities
Update to the latest version of Desktop and previous version of Atom before February 2.

Object Graph Notation Language (OGNL) is a popular, Java-based, expression language used in popular frameworks and applications, such as Apache Struts and Atlassian Confluence. Learn more about bypassing certain OGNL injection protection mechanisms including those used by Struts and Atlassian Confluence, as well as different approaches to analyzing this form of protection so you can harden similar systems.

We're excited to share the newest addition to our GitHub Bug Bounty Program!

Policymakers around the world are developing policies that impact how software gets built and who gets to build it, see the latest now.

Git users are encouraged to upgrade to the latest version, especially if they use `git apply` or `git clone` against untrusted patches or repositories.


Welcome to our special edition of the Release Radar 🎄. Between Christmas festivities, end of the year parties, Chinese New Year, or simply enjoying some time off, almost everyone has…


We’ve got ten top games from the latest Ludum Dare game jam plus source code for you to check out. Pun intended.


Below are my prepared remarks delivered at the EU Open Source Policy Summit in Brussels on Feb 3rd.

In January, we experienced two incidents, one that resulted in degraded performance for Packages and Pages and another that impacted Git users.
Explore how GitHub and cloud native strategies can help you address common DevOps pipeline and team antipatterns.

In the coming months, we’re scaling, expanding, and launching new programming to further DEI within open source communities.
We delivered two different courses specifically designed to help students in the lowest-income neighborhood of Montevideo, Uruguay learn how to use GitHub and understand the value of open source.
Develop your design and collaboration skills to get your clever intentions off the ground.

Policymakers around the world are developing policies that impact how software gets built and who gets to build it, see the latest now.
Looking back over a year’s worth of developer-first content moderation and, new in this report, making our data more accessible to researchers.
Our mission to accelerate human progress through developer collaboration requires us, from time to time, to fight against legal developments that would needlessly impair developers’ right to innovate. That’s why GitHub has filed an amicus brief in the appeal of Yout LLC v. Recording Industry of America, Inc.

GitHub Copilot boosts developer productivity, but using it responsibly still requires good developer and DevSecOps practices.
There are now 100 million developers around the world using GitHub. Here’s what this means—and why it’s just the beginning.
Learn about the design behind, and solutions to, several of GitHub’s CTF challenge for Ekoparty’s 2022 event!