Войти
  • 15901Просмотров
  • 3 года назадОпубликованоRomano Roth

GitLab: DevSecOps: Part 5/12: Protect your Apps with Static Application Security Testing (SAST)

How to do Static Application Security Testing (SAST) 🛡️ in GitLab and to succeed with this critical security configuration. Session 5: In this video, Padi and I will show you how to find vulnerabilities in your code using Static Application Security Testing (SAST) in GitLab. ▬▬▬▬▬▬ T I M E S T A M P S ⏰ ▬▬▬▬▬▬ 00:00 Welcome 00:07 Intro 00:14 How to do Static Application Security Testing (SAST) 🛡️ in GitLab? 00:31 DevSecOps with GitLab 01:20 What is SAST? 02:25 How to enable SAST in GitLab? 02:45 Demo project 04:05 Enable SAST in GitLab 05:05 06:05 Pipeline results 06:36 Results of the semgrep-sast job 07:25 Security tab 08:29 Vulnerability report 09:04 Summary ▬▬▬▬▬▬ L I N K S 🔗▬▬▬▬▬▬ Source Code Blog-Post GitLab Patrick Steger Static Application Security Testing (SAST) in GitLab ▬▬▬▬▬▬ Want to learn more? 🚀 ▬▬▬▬▬▬ Session 1: What is GitLab 🦊? | The fundamental concepts Session 2: Introduction to GitLab 🦊 | Creating a simple project Session 3: What is Software Composition Analysis (SCA) 🧩 in GitLab? Session 4: How to ensure License Compliance 📜 in GitLab? Session 5: How to do Static Application Security Testing (SAST) 🛡️ in GitLab? Session 6: How to do Container Scanning 📦 in GitLab? Session 7: What is Secret Detection 🤫? Session 8: Dynamic Application Security Testing (DAST) Session 9: What is Vulnerability Management 📝? Session 10: How to do a Merge Request in GitLab Session 11: How to do a Schedule Pipeline in GitLab? Session 12: Our Recommendations ▬▬▬▬▬▬ S U B S C R I B E 🔔 ▬▬▬▬▬▬ ╔═╦╗╔╦╗╔═╦═╦╦╦╦╗╔═╗ ║╚╣║║║╚╣╚╣╔╣╔╣║╚╣═╣ ╠╗║╚╝║║╠╗║╚╣║║║║║═╣ ╚═╩══╩═╩═╩═╩╝╚╩═╩═╝ ▬▬▬▬▬▬ Connect with me 👋 ▬▬▬▬▬▬ LINKEDIN ► TWITTER ► INSTAGRAM ► FACEBOOK ► MEETUP ► CONFERNCE ► HOMEPAGE ► ▬▬▬▬▬▬ P L A Y L I S T S ▶️ ▬▬▬▬▬▬ Software Testing Extreme Programing Business Process Management #DevSecOps #DevOps #GitLab #RomanoRoth