loading page

Static Code Analysis for Security in Continuous Integration
  • Sebastian Funke
Sebastian Funke

Corresponding Author:[email protected]

Author Profile

Abstract

In our paper we present our research results for the question: How to integrate static code analysis for security in a common continuous integration (CI) process of software development. We used the popular CI tool Jenkins on a test project with a variety of vulnerabilities. Thereby we included a couple of static analysis tools in Jenkins for finding bugs and vulnerabilities before and during the build process.