Log in

goodpods headphones icon

To access all our features

Open the Goodpods app
Close icon
Software Engineering Institute (SEI) Podcast Series - Automated Repair of Static Analysis Alerts

Automated Repair of Static Analysis Alerts

05/31/24 • 27 min

Software Engineering Institute (SEI) Podcast Series

Developers know that static analysis helps make code more secure. However, static analysis tools often produce a large number of false positives, hindering their usefulness. In this podcast from the Carnegie Mellon University Software Engineering Institute (SEI), David Svoboda, a software security engineer in the SEI’s CERT Division, discusses Redemption, a new open source tool from the SEI that automatically repairs common errors in C/C++ code generated from static analysis alerts, making code safer and static analysis less overwhelming.

plus icon
bookmark

Developers know that static analysis helps make code more secure. However, static analysis tools often produce a large number of false positives, hindering their usefulness. In this podcast from the Carnegie Mellon University Software Engineering Institute (SEI), David Svoboda, a software security engineer in the SEI’s CERT Division, discusses Redemption, a new open source tool from the SEI that automatically repairs common errors in C/C++ code generated from static analysis alerts, making code safer and static analysis less overwhelming.

Previous Episode

undefined - Cyber Career Pathways and Opportunities

Cyber Career Pathways and Opportunities

Not all paths to cybersecurity careers look the same. In this podcast from the Carnegie Mellon University Software Engineering Institute (SEI), Randy Trzeciak, deputy director of cyber risk and resilience in the SEI’s CERT division, discusses his career journey, resources for pursuing a career in cybersecurity, and the importance of building a diverse workforce.

Next Episode

undefined - Developing a Global Network of Computer Security Incident Response Teams (CSIRTs)

Developing a Global Network of Computer Security Incident Response Teams (CSIRTs)

Cybersecurity risks aren’t just a national concern. In this podcast from the Carnegie Mellon University Software Engineering Institute (SEI), the CERT division’s Tracy Bills, senior cybersecurity operations researcher and team lead, and James Lord, security operations technical manager, discuss the SEI’s work developing Computer Security Incident Response Teams (CSIRTs) across the globe.

Episode Comments

Generate a badge

Get a badge for your website that links back to this episode

Select type & size
Open dropdown icon
share badge image

<a href="https://goodpods.com/podcasts/software-engineering-institute-sei-podcast-series-110121/automated-repair-of-static-analysis-alerts-53010687"> <img src="https://storage.googleapis.com/goodpods-images-bucket/badges/generic-badge-1.svg" alt="listen to automated repair of static analysis alerts on goodpods" style="width: 225px" /> </a>

Copy