
Sign up to save your podcasts
Or


Developers know that static analysis helps make code more secure. However, static analysis tools often produce a large number of false positives, hindering their usefulness. In this podcast from the Carnegie Mellon University Software Engineering Institute (SEI), David Svoboda, a software security engineer in the SEI's CERT Division, discusses Redemption, a new open source tool from the SEI that automatically repairs common errors in C/C++ code generated from static analysis alerts, making code safer and static analysis less overwhelming.
By Members of Technical Staff at the Software Engineering Institute4.5
1818 ratings
Developers know that static analysis helps make code more secure. However, static analysis tools often produce a large number of false positives, hindering their usefulness. In this podcast from the Carnegie Mellon University Software Engineering Institute (SEI), David Svoboda, a software security engineer in the SEI's CERT Division, discusses Redemption, a new open source tool from the SEI that automatically repairs common errors in C/C++ code generated from static analysis alerts, making code safer and static analysis less overwhelming.

273 Listeners

623 Listeners

375 Listeners

163 Listeners

638 Listeners

284 Listeners

8,008 Listeners

178 Listeners

189 Listeners

202 Listeners

0 Listeners

0 Listeners

137 Listeners

46 Listeners

59 Listeners

588 Listeners

77 Listeners