5 / 16 (Thu.) 15:00 - 17:00 4F 4D

DevSecOps in Practice:From Vulnerability Scanning to AI-powered Auto-remediation

As a software engineer, have you ever been exhausted by manually fixing vulnerabilities? Do you crave a more efficient way to fix them?

This workshop will take you through the magical process of using AI to automatically fix software vulnerabilities. You will build a sample project with security vulnerabilities and use an AI model to automatically fix them. You will also experience the traditional manual repair process and compare the differences and advantages and disadvantages of the two repair methods.

Session Objectives
  1. Deepening Participants' Understanding of DevSecOps.
  2. Exposing Participants to the Implementation of AI Automatic Patching of Code Vulnerabilities in CI/CD.
  3. Understanding the Current Capabilities and Application Scenarios of AI Patching of Security Vulnerabilities.
Session Summary
  1. Introduction to DevSecOps Concepts, Processes, and Tools.
  2. Building a Vulnerable Sample Project with III DevSecOps Tool Platform.
  3. Experiencing CI/CD Automatic Linking of Open Source Tools to Detect Project Vulnerabilities.
  4. Introduction to SonarQube for Scanning Project Vulnerabilities.
  5. Experiencing Manual Patching of Code Vulnerabilities.
  6. Experiencing AI Automatic Patching of Code Vulnerabilities.
  7. Comparing Manual Patching and AI Patching.
Device Requirement You Should Prepared for
  1. Laptop with Intel i5 processor or above and internet connectivity.
  2. Chrome browser.
  3. Recommended to install Git client software (Exp. Git, Sourcetree, TortoiseGit) and programming tools (Exp. VSCode, Notepad++).
Skills Requirement You Should Have
  • Attendees are advised to have experience in information security, development, and IT.
Limit on the Number of Attendee
24 people
Jonathan Tsai
SPEAKER
DevSecOps Consultant /Section Manager at Digital Transformation Research Institute
III

TOPIC / TRACK
CyberLAB

LOCATION
Taipei Nangang Exhibition Center, Hall 2
4F 4D

LANGUAGE
Chinese