Skip to content

Automated DevSecOps Pipeline for Vulnerability Detection and Remediation - #2990

Open
sangeetha-murugesan-sda9 wants to merge 7 commits into
KTH:2026from
sangeetha-murugesan-sda9:Secure-CI-Pipeline-for-Automated-Vulnerability-Detection-and-Remediation
Open

Automated DevSecOps Pipeline for Vulnerability Detection and Remediation#2990
sangeetha-murugesan-sda9 wants to merge 7 commits into
KTH:2026from
sangeetha-murugesan-sda9:Secure-CI-Pipeline-for-Automated-Vulnerability-Detection-and-Remediation

Conversation

@sangeetha-murugesan-sda9

@sangeetha-murugesan-sda9 sangeetha-murugesan-sda9 commented Sep 7, 2026

Copy link
Copy Markdown

Assignment Proposal

Title

Automated DevSecOps CI Pipeline for Vulnerability Detection and Remediation.

Names and KTH ID

Deadline

Week 6

Category

Demo

Description

Our demo investigates how automated security testing and remediation can prevent vulnerable code from being merged into a shared codebase. We will use GitHub Actions together with CodeQL and Dependabot to detect vulnerabilities and automatically create fixes.

We will introduce a controlled vulnerability, demonstrate its automatic detection and remediation, and show how tests, security checks, and a security gate validate the fix before allowing the pull request to merge.

The core workflow is:

Detect → Remediate → Validate → Security Gate → Merge/Block

We will also discuss limitations such as incomplete automated remediation, regressions caused by fixes, and the fact that passing security checks does not guarantee complete security.

Relevance

The demo demonstrates DevSecOps by integrating security into the CI workflow. Automation provides fast feedback, reduces manual work, and ensures that vulnerable changes are blocked before reaching the main branch.

@github-actions github-actions Bot added the demo One of the task categories listed in README.md label Sep 7, 2026
@sangeetha-murugesan-sda9 sangeetha-murugesan-sda9 changed the title Automated DevSecOps for Vulnerability Detection and Remediation Automated DevSecOps Pipeline for Vulnerability Detection and Remediation Sep 7, 2026
@algomaster99

Copy link
Copy Markdown
Collaborator

Readme is not correctly formatted
Need exactly: ['Assignment Proposal', 'Title', 'Names and KTH ID', 'Deadline', 'Category', 'Description']

Got: ['Assignment Proposal', 'Title', 'Names and KTH ID', 'Deadline', 'Category', 'Description', 'Relevance']

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

demo One of the task categories listed in README.md

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants