SonarCloud(@SonarCloud) 's Twitter Profileg
SonarCloud

@SonarCloud

SonarCloud, crafted by @SonarSource, is the leading online service for Code Quality & Security. Free analysis for open-source projects covering 24 languages.

ID:899543403658129409

linkhttps://sonarcloud.io calendar_today21-08-2017 08:07:14

495 Tweets

2,8K Followers

123 Following

Follow People
Sonar Research(@Sonar_Research) 's Twitter Profile Photo

Heading to Lausanne for ? Meet our team there; we're presenting two talks:

๐Ÿ”“ Finding vulnerabilities in JumpServer
๐Ÿงน Bypassing HTML Sanitizers with mXSS

Excited to see you there!

Heading to Lausanne for #Insomnihack? Meet our team there; we're presenting two talks: ๐Ÿ”“ Finding vulnerabilities in JumpServer ๐Ÿงน Bypassing HTML Sanitizers with mXSS Excited to see you there!
account_circle
Sonar(@SonarSource) 's Twitter Profile Photo

CleverTap is a customer engagement platform that powers over 10,000 apps globally, helping customers retain their users. Check out our recent case study on how their development teams improved their code quality with SonarQube!

Read the full story ๐Ÿ‘‰ bit.ly/3VV7kRf

@CleverTap is a customer engagement platform that powers over 10,000 apps globally, helping customers retain their users. Check out our recent case study on how their development teams improved their code quality with SonarQube! Read the full story ๐Ÿ‘‰ bit.ly/3VV7kRf
account_circle
Manish Kapur(@kapmani) 's Twitter Profile Photo

๐Ÿš€ SonarCloud & SonarQube 10.4 expand the scanning capabilities to include Helm Chart files, alongside the existing support. No extra steps needed to scans your Helm Charts, Kubernetes templates, & values.yaml.

๐Ÿš€ @SonarCloud & @SonarQube 10.4 expand the scanning capabilities to include Helm Chart files, alongside the existing #Kubernetes support. No extra steps needed to scans your Helm Charts, Kubernetes templates, & values.yaml. #DevOps #K8s #HelmChart
account_circle
Sonar Research(@Sonar_Research) 's Twitter Profile Photo

๐Ÿ”Uncovering critical vulnerabilities in Jenkins, which could lead to RCE (CVE-2024-23898, CVE-2024-23897):

Check out our latest blog post for the technical details on how attackers could potentially gain unauthenticated RCE on

sonarsource.com/blog/excessiveโ€ฆ

account_circle
Sonar Research(@Sonar_Research) 's Twitter Profile Photo

Nominations for Pwnie Awards. Talks at Black Hat, DEF CON, HEXACON. Success at Pwn2Own. Vulnerabilities in TeamCity, Proton Mail, Moodle, and much more. 2023 was definitely an exciting year for us!

sonarsource.com/blog/vulnerabiโ€ฆ

account_circle
Sonar(@SonarSource) 's Twitter Profile Photo

๐ŸŽ‚ To celebrate and honor SonarQubeโ€™s 15th anniversary, weโ€™re looking back and reflecting on the milestones that led to the Clean Code solution we know so well today. Check out this timelapse video on how SonarQubeโ€™s UI has evolved since 2008!

account_circle
Sonar(@SonarSource) 's Twitter Profile Photo

๐ŸŽ‰ Happy New Year! What's in store for 2024? Between rapidly evolving topics such as AI and post-quantum cryptography, Our Developer Advocate Team shares their predictions on what they foresee for big trends this coming year

Read their predictions here!
bit.ly/48jplvY

account_circle
Sonar(@SonarSource) 's Twitter Profile Photo

๐Ÿ‘ Secrets Detection: Available in SonarLint, SonarQube, and SonarCloud empowers developers to identify leaked secrets at various stages of the code development process - from the IDE, throughout code repositories, and across the CI/CD lifecycle

bit.ly/47Z95zW

account_circle
Sonar Research(@Sonar_Research) 's Twitter Profile Photo

Critical vulnerabilities in pfSense firewall: RCE via XSS and Command Injection!
Find out how SonarCloud discovered these vulnerabilities in our newest blog post:
sonarsource.com/blog/pfsense-vโ€ฆ
(CVE-2023-42325, CVE-2023-42326, CVE-2023-42327)

account_circle
Sonar(@SonarSource) 's Twitter Profile Photo

๐ŸŒ Sonar Research recently discovered multiple vulnerabilities in pfSense, using SonarCloud! pfSense CE 2.7.0 and pfSense Plus 23.05.1 are vulnerable to two XSS vulnerabilities and a Command Injection vulnerability โฌ‡๏ธ

๐Ÿ”นCVE-2023-42325
๐Ÿ”นCVE-2023-42327
๐Ÿ”นCVE-2023-42326

๐ŸŒ @Sonar_Research recently discovered multiple vulnerabilities in pfSense, using @SonarCloud! pfSense CE 2.7.0 and pfSense Plus 23.05.1 are vulnerable to two XSS vulnerabilities and a Command Injection vulnerability โฌ‡๏ธ ๐Ÿ”นCVE-2023-42325 ๐Ÿ”นCVE-2023-42327 ๐Ÿ”นCVE-2023-42326
account_circle
VMblog(@vmblog) 's Twitter Profile Photo

Peter McKee of Sonar pulled together from 6 experts on the future of coding in the age of . Here are the software development they expect to surface in 2024. vmblog.com/archive/2023/1โ€ฆ

Peter McKee of @SonarSource pulled together #predictions from 6 experts on the future of coding in the age of #AI. Here are the software development #trends they expect to surface in 2024. vmblog.com/archive/2023/1โ€ฆ #supplychain #genAI #Cryptography #security
account_circle
Jonathan Vila ๐Ÿฅ‘ โ˜•๏ธ -๐Ÿ‡ช๐Ÿ‡ธ๐Ÿ‡ต๐Ÿ‡ท๐Ÿ‡ฌ๐Ÿ‡ง(@vilojona) 's Twitter Profile Photo

๐Ÿ”Top issues in projects ๐Ÿ”

๐Ÿ‘ Having in our projects is important, and every developer would agree on that

๐Ÿ‘‰According to SonarLint telemetry, there are lots of issues that appear in the list of analyzed projects by Sonar

1/9
sonarsource.com/blog/top-issueโ€ฆ

๐Ÿ”Top issues in #Java projects ๐Ÿ” ๐Ÿ‘ Having #cleancode in our projects is important, and every developer would agree on that ๐Ÿ‘‰According to @SonarLint telemetry, there are lots of issues that appear in the list of analyzed projects by @SonarSource 1/9 sonarsource.com/blog/top-issueโ€ฆ
account_circle
Sonar(@SonarSource) 's Twitter Profile Photo

In this blog, AWS Solutions Architect Patrick Madec and Sonar Cloud Solutions Architect Kornรฉl Zoltรกn Kotรกn dive into how Sonar built a unified API on AWS!

Read the full story ๐Ÿ‘‡
go.aws/4achGRx

account_circle
Sonar(@SonarSource) 's Twitter Profile Photo

Attending AWS re:Invent? Stop by Booth 193! Learn how SonarCloud and SonarQube seamlessly integrate with AWS DevOps services like CodeCommit, CodeBuild, CodePipeline, and CodeCatalyst, to ensure your code is bug-free and production-ready!

Attending AWS re:Invent? Stop by Booth 193! Learn how @SonarCloud and @SonarQube seamlessly integrate with AWS DevOps services like CodeCommit, CodeBuild, CodePipeline, and CodeCatalyst, to ensure your code is bug-free and production-ready!
account_circle
Sonar(@SonarSource) 's Twitter Profile Photo

SonarQube 10.3 is LIVE! ๐Ÿš€
โœ… Enhanced Secrets Detection
โœ… Clean Code Taxonomy Updates
โœ… Clean as You Code Improvements
โœ… Stronger Security Capabilities
โœ… Plenty of language updates

Thread below ๐Ÿงต ๐Ÿ‘‡

SonarQube 10.3 is LIVE! ๐Ÿš€ โœ… Enhanced Secrets Detection โœ… Clean Code Taxonomy Updates โœ… Clean as You Code Improvements โœ… Stronger Security Capabilities โœ… Plenty of language updates Thread below ๐Ÿงต ๐Ÿ‘‡
account_circle
SonarCloud(@SonarCloud) 's Twitter Profile Photo

SonarCloud Product News is here! Subscribe to receive information on product releases, events, and other updates, delivered directly to your email inbox. Itโ€™s never been easier to stay in the loop for all things SonarCloud.

Subscribe below ๐Ÿ‘‡
sonarsource.com/products/sonarโ€ฆ

account_circle
Sonar(@SonarSource) 's Twitter Profile Photo

AI-driven real estate intelligence company, Recognyte, sees immediate ROI with Sonar! In this case study, learn how SonarCloud Quality Gates can act as a benefit, not a bottleneck, for streamlining the DevOps workflow

AI-driven real estate intelligence company, Recognyte, sees immediate ROI with Sonar! In this case study, learn how @SonarCloud Quality Gates can act as a benefit, not a bottleneck, for streamlining the DevOps workflow
account_circle
Sonar(@SonarSource) 's Twitter Profile Photo

It's essential to remember that benchmarks are not universally reliable indicators of SAST performance, as they often serve broader purposes. In certain instances, vulnerabilities may intentionally be fabricated, rendering them undetectable.

bit.ly/3Qphru8

account_circle