#bld #buildsystem #buildtool #codeanalysis #github #java #spotbugs
github.com/rife2/bld-sp...
#bld #buildsystem #buildtool #codeanalysis #github #java #spotbugs
github.com/rife2/bld-sp...
unit42.paloaltonetworks.com/github-actio...
spotbugs/sonar-findbugs
↓
spotbugs/spotbugs
↓
reviewdog/action-setup
↓
tj-actions/changed-files
の順でやられてたのね、怖すぎ
unit42.paloaltonetworks.com/github-actio...
spotbugs/sonar-findbugs
↓
spotbugs/spotbugs
↓
reviewdog/action-setup
↓
tj-actions/changed-files
の順でやられてたのね、怖すぎ
#bld #buildsystem #buildtool #codeanalysis #github #java #spotbugs
github.com/rife2/bld-sp...
#bld #buildsystem #buildtool #codeanalysis #github #java #spotbugs
github.com/rife2/bld-sp...
Do you ever forget to call `.verify()` at the end of an EqualsVerifier call? Tools like IntelliJ, Spotbugs & ErrorProne will warn you!
Also: prefab values for Sequenced Collections!
Merry Christmas! 🎄🎅🏻
Check it out: github.com/jqno/equalsv...
#java
Do you ever forget to call `.verify()` at the end of an EqualsVerifier call? Tools like IntelliJ, Spotbugs & ErrorProne will warn you!
Also: prefab values for Sequenced Collections!
Merry Christmas! 🎄🎅🏻
Check it out: github.com/jqno/equalsv...
#java
#bld #buildsystem #buildtool #codeanalysis #github #java #spotbugs
github.com/rife2/bld-sp...
#bld #buildsystem #buildtool #codeanalysis #github #java #spotbugs
github.com/rife2/bld-sp...
> Access is allowed with explicit read lock.
> Now each coroutine scheduled on EDT wrapped in implicit write intent lock
> Access is allowed with explicit read lock.
> Now each coroutine scheduled on EDT wrapped in implicit write intent lock
Strict CI gates on: PMD, SpotBugs, JaCoCo, Trivy, OWASP ZAP.
🔔 www.youtube.com/watch?v=ukcQ...
Strict CI gates on: PMD, SpotBugs, JaCoCo, Trivy, OWASP ZAP.
🔔 www.youtube.com/watch?v=ukcQ...
The cascading supply chain attack that initially targeted Coinbase before becoming more widespread to single out users of the "tj-actions/changed-files" GitHub Action has been traced further back …
#hackernews #news
The cascading supply chain attack that initially targeted Coinbase before becoming more widespread to single out users of the "tj-actions/changed-files" GitHub Action has been traced further back …
#hackernews #news
#spotbugs #rootcause #github #supplychainattack #cyberattacks #CyberSecurity #supplychain
#spotbugs #rootcause #github #supplychainattack #cyberattacks #CyberSecurity #supplychain
"Recent GitHub supply chain attack traced to leaked SpotBugs token" #bolhasec
"Recent GitHub supply chain attack traced to leaked SpotBugs token" #bolhasec
Maybe it's time to clean that stuff up. There are now enough tests so that I don't fear breaking changes anymore when fixing spotbugs bugs.
Maybe it's time to clean that stuff up. There are now enough tests so that I don't fear breaking changes anymore when fixing spotbugs bugs.
GitHub supply chain attack: A stolen token from SpotBugs sparked a massive leak, revealing secrets from 23,000 projects. Who knew mischief could be so technical?
thenimblenerd.com?p=1041944
GitHub supply chain attack: A stolen token from SpotBugs sparked a massive leak, revealing secrets from 23,000 projects. Who knew mischief could be so technical?
thenimblenerd.com?p=1041944