
Sign up to save your podcasts
Or
Developers know that static analysis helps make code more secure. However, static analysis tools often produce a large number of false positives, hindering their usefulness. In this podcast from the Carnegie Mellon University Software Engineering Institute (SEI), David Svoboda, a software security engineer in the SEI’s CERT Division, discusses Redemption, a new open source tool from the SEI that automatically repairs common errors in C/C++ code generated from static analysis alerts, making code safer and static analysis less overwhelming.
4.5
1818 ratings
Developers know that static analysis helps make code more secure. However, static analysis tools often produce a large number of false positives, hindering their usefulness. In this podcast from the Carnegie Mellon University Software Engineering Institute (SEI), David Svoboda, a software security engineer in the SEI’s CERT Division, discusses Redemption, a new open source tool from the SEI that automatically repairs common errors in C/C++ code generated from static analysis alerts, making code safer and static analysis less overwhelming.
272 Listeners
1,828 Listeners
360 Listeners
627 Listeners
0 Listeners
623 Listeners
269 Listeners
202 Listeners
7,876 Listeners
167 Listeners
187 Listeners
0 Listeners
127 Listeners
33 Listeners
47 Listeners
458 Listeners
86 Listeners