We're hiring a Security Analyst (Advisory Curation) on the team ✨ Remote in the US. github.greenhouse.io/internal_job_b
GitHub Security
@GitHubSecurity
GitHub Security’s Tweets
We're hiring a Senior Manager, Secure Access Engineering ✨ Remote in the US.
1
4
8
Introducing 's revamped VIP bug bounty program! Check out the perks of being a Hacktocat and how you can earn an invite:
3
39
155
Here are our May 🌻 bug bounty stats:
✅ Closed 137 reports
💰 Awarded $104,817 in bounties
👥 102 hackers participated in our program
1
10
Get to know the Open Source Vulnerability (OSV) format! Check out our latest blog by , Open Source Security Team & , Advisory Database Team
1
11
17
Here are our April 🌦�? bug bounty stats:
✅Closed 135 reports
💰 Awarded $110,817 in bounties
👥 110 hackers participated in our program
1
4
24
3
8
64
1
2
21
Join us tonight at our San Francisco office for a night of networking and collaboration (plus 🥂 & �?�) with ! RSVP: resources.github.com/after-hours-wi #RSAC
3
10
Quote Tweet
In #RSAC 2023 speaker @_mph4 of @GitHub's upcoming session, attendees will examine the state of open source security and learn why more must be done, collectively, to secure the world’s open source software together. Details: spr.ly/6014OPcxn
2
Join us at HQ next Tuesday for a Lunch & Learn with to discuss best practices for secure API development. RSVP here: resources.github.com/github-rsa-wor. #RSAC #GitHubatRSA
5
12
51
"[T]he SLSA framework has served as a launchpad for us in determining what capabilities to provide. It has been instrumental in moving forward the security of open source packages in a way that makes sense for users, maintainers, & vendors" – from
2
5
starting today, developers building npm projects on Actions can request a provenance statement to be published alongside their package, giving consumers a verifiable way to link a package back to its source repository and build instructions.
9
88
251
Connect with maintainers, report issues, get credit ✅
2
6
📣 Calling all attendees! Here are three ways to engage with at the conference next week. #GitHubatRSA #RSAC resources.github.com/github-rsa-con
1
3
4
We believe the use of strong authentication is one of the most important ways that , as the home of open source, can help defend the entire ecosystem against supply chain attacks. Check out my take on the recent episode of !
Quote Tweet
Our latest podcast episode features a discussion with @github CSO @mph4.
Decipher Podcast: Mike Hanley Returns decipher.sc/decipher-podca #decipher #deciphersec
1
3
18
Cybersecurity is a global team sport.
GitHub is proud to endorse the industry principles to curb the rising threat of cyber mercenaries.
2
13
35
Here are our March ☘�? bug bounty stats:
✅Closed 176 reports
💰Awarded $95,968 in bounties
👥131 hackers participated in our program
3
7
21
At approximately 05:00 UTC on March 24, out of an abundance of caution, we replaced our RSA SSH host key for GitHub.com. Read more here:
17
160
170
Happy work anniversary to , who joined as its first Chief Security Officer two years ago 🎉 Read about his experience so far: linkedin.com/pulse/two-year
2
5
10







