#GoSEC
On a train to Montreal for #gosec 2025!
September 9, 2025 at 10:03 PM
Monica Verma at #gosec @gosec
"There's no untraining an AI model." After ransomware groups feed your data to AI companies of you don't pay. 😱
September 10, 2025 at 4:56 PM
I'm off to record my audiobook for Alice and Bob Learn Secure Coding this week in Ottawa! Next week is #GoSec in Montreal. 🥳
August 31, 2025 at 6:33 PM
Guess who I saw at @gosec #gosrc in Montreal? Patrick Garrity!
September 10, 2025 at 6:02 PM
Come see my talk, Security Champion Worst Practices, in room 513A & B, at 10 am. #gosec2025 #gosec
September 10, 2025 at 1:41 PM
Here Monica Verma giving a keynote at #gosec 2025. 🥳 @montalkscyber
September 10, 2025 at 4:52 PM
Writing secure Go code and use some Tools to check it: vet, staticcheck, golangci-lint, govulncheck, gosec - Article by Jakub Jarosz @qba73.bsky.social #Golang #Infosec
Writing secure Go code
Security testing starts with understanding vulnerabilities. The CVE website lists known software flaws. The OWASP Top Ten highlights common weaknesses. With this knowledge, we can improve our Go…
jarosz.dev
December 10, 2024 at 8:10 PM
gosec (⭐️ 8948)

Go security checker

#go
September 21, 2026 at 3:31 AM
gosec (⭐️ 7860)

#go
November 22, 2024 at 11:02 PM
gosec (⭐️ 8833)

Go security checker

#go
May 24, 2026 at 11:17 AM
GoSec 25: The Premier Cybersecurity Conference of 2025 in Montreal#Canada#Cybersecurity#Montreal#GoSecure#GoSec_25
GoSec 25: The Premier Cybersecurity Conference of 2025 in Montreal
Join cybersecurity professionals at GoSec 25, happening on September 10-11, 2025 in Montreal. Discover key insights and innovations in cybersecurity.
third-news.com
July 18, 2025 at 7:09 PM
🐧 **gosec – Go Security Checker**

gosec is a command-line security scanner for Go projects. The post gosec – Go Security Checker appeared first on LinuxLinks.

📰 Source: LinuxLinks
🔗 Link: https://www.linuxlinks.com/gosec-go-security-checker/

#linux #opensource
gosec – Go Security Checker
gosec is a command-line security scanner for Go projects. It analyses Go source code by inspecting both the abstract syntax tree and SSA representation to uncover security weaknesses such as insecure coding patterns, injection risks, file and path handling issues, and cryptographic problems. The tool can be run locally in a development workflow, integrated into GitHub Actions, and used with SARIF output for code scanning pipelines. This is free and open source software. #### Key Features * Scans Go code for common security issues using pattern-based rules. * Uses SSA-based analysis to detect problems involving type conversions, slice bounds, and cryptographic usage. * Includes taint analysis to trace user-controlled data flowing into dangerous functions. * Supports multiple reporting formats including JSON and SARIF. * Integrates with GitHub Actions and GitHub code scanning workflows. * Provides a standard Go analysis package for integration with compatible tooling. **Website:** **github.com/securego/gosec** **Support:** **Developer:** securego **License:** Apache License 2.0 gosec is written in Go. Learn Go with our recommended **free books** and **free tutorials**. * * * Explore our comprehensive directory of **recommended free and open source software**. Our carefully curated collection spans every major software category. This directory is part of our ongoing series of **informative articles** for Linux enthusiasts. It features hundreds of detailed reviews, along with open source alternatives to proprietary solutions from major corporations such as Google, Microsoft, Apple, Adobe, IBM, Cisco, Oracle, and Autodesk. You’ll also find interesting projects to try, hardware coverage, free programming books and tutorials, and much more. Discovered a useful open source Linux program that we haven’t covered yet? Let us know by completing **this form**. ---
www.linuxlinks.com
May 6, 2026 at 12:48 AM
gosec - Go Security Checker v2.19.0 release update
- support for PowerPC ppc64le
- Fixed multi-line ignore
- Fixed G602 rule validation slice bounds
#securitytools #cicd #infosec #cybersecurity
GitHub - securego/gosec: Go security checker
Go security checker. Contribute to securego/gosec development by creating an account on GitHub.
github.com
February 12, 2024 at 12:34 PM
Huge upgrade to my site! Added Uber FX for DI, all tests and linting pass, SonarQube, gosec, govulnchecker scans look great. Test coverage is low but will improve. Added Air hot reloader for local dev.
Changes: 34 files, 1652 additions, 233 deletions.
January 29, 2025 at 9:34 AM
GoSec 25: Shaping the Future of Cybersecurity GoSecure is proud to announce GoSec 25, the premier cybersecurity conference taking place on September 10–11, 2025, in downtown Montreal and online...

#Cyber #Security #ai #machine #learning #ai #technology […]

[Original post on ai-techpark.com]
Original post on ai-techpark.com
ai-techpark.com
July 22, 2025 at 7:54 AM
October 17, 2025 at 1:52 PM
📢 #Meetup #Golang #Lyon le 3 décembre ! 📢
Mardi prochain, rejoignez-nous! Au programme :
- Jean-Hadrien Chabran nous parlera de #Bazel
- David Aparicio nous présentera #GoSec
Dans les locaux de #Batch, près de la place Bellecour à Lyon.
🔗 Inscriptions : lnkd.in/d-H9Tpmx
Venez nombreux, à mardi ! 🚀
November 28, 2024 at 1:19 PM
A new golangci-lint release, produces 11 new gosec linter checks

Claude: Here's my analysis of all 11 issues. All are false positives from gosec's new taint analysis rules.

Good dog.
February 17, 2026 at 1:59 PM
Finding vulnerabilities is only the beginning. What if your tools could help fix them too? 🔍

Join Ravi Sastry Kadali at #GopherCon to explore AI-powered taint analysis for gosec and discover how it can uncover security vulnerabilities earlier.

🎟️ gophercon.com

#golang
June 26, 2026 at 8:24 PM
yes, unfortunately the check is only enforced by the linter. however, golint-ci is a modular linter designed for build pipelines that does force all type checks and error checks. gosec does as well so in mature build pipelines there is some safety.
February 1, 2025 at 1:49 AM
Dependabot, general linters, linters like gosec. None of those really help for different classes of vulnerability but it's a good baseline that's easy to achieve. Other than that though, just consider where inputs are coming from. Consider who can do which actions.
November 14, 2024 at 5:01 PM
It'd be awesome if either language could make it that easy.
Rust: safety at compile time + Miri/Kani/cargo-audit/cargo-deny for deeper checks.
Go: vet/gosec + govulncheck/staticcheck. Both need a full toolkit beyond just the compiler for real security.
Different approaches, same goal 🔒
December 11, 2024 at 2:32 PM
Not sure if it’ll help much with refactorings, but if you haven’t already you might want to set up All Of The Linters. govulncheck, gosec, golangci-lint, etc etc. And generate SBOMs with CycloneDX and scan them with osv-scanner. I really dislike its weak type system, so all help is needed.
June 28, 2025 at 11:16 PM
Many asked for the slides of my @TexasCyber Summit slides so I've added them to my GitHub repo

GitHub.com/scoubi/talks

You will also find the slides in French because I gave the talk in French at GoSec Conference and NorthSec

I will also post my older talks hope you'll enjoy them
October 3, 2023 at 11:07 AM