![Software Engineering Institute (SEI) Podcast Series artwork](https://is5-ssl.mzstatic.com/image/thumb/Podcasts113/v4/74/4c/20/744c209c-570e-f609-f4ab-23ad6c680dc8/mza_2854736445903420738.jpg/100x100bb.jpg)
Automated Repair of Static Analysis Alerts
Software Engineering Institute (SEI) Podcast Series
English - May 31, 2024 17:29 - 27 minutes - 33.2 MB - ★★★★★ - 18 ratingsTechnology Science futuretech softwareengineering cybersecurity Homepage Download Apple Podcasts Google Podcasts Overcast Castro Pocket Casts RSS feed
Previous Episode: Cyber Career Pathways and Opportunities
Developers know that static analysis helps make code more secure. However, static analysis tools often produce a large number of false positives, hindering their usefulness. In this podcast from the Carnegie Mellon University Software Engineering Institute (SEI), David Svoboda, a software security engineer in the SEI’s CERT Division, discusses Redemption, a new open source tool from the SEI that automatically repairs common errors in C/C++ code generated from static analysis alerts, making code safer and static analysis less overwhelming.