BLOG
Sonar's latest blog posts
Building Confidence and Trust in AI-Generated Code
To tackle the accountability and ownership challenge accompanying AI-generated code, we are introducing Sonar AI Code Assurance
Common TypeScript Issues Nº 2: non-empty statements
We crunched the data from SonarQube for IDE to discover the top 5 most common TypeScript issues. In this 5 part series, we outline each issue and how to avoid it.
Read Blog post >
Empowering weak primitives: file truncation to code execution with Git
Let's dive into how a seemingly minor code vulnerability can hide a critical impact!
Read Blog post >
Clean Code: The Best Approach to Writing Secure Cloud Native Apps
With Sonar and the Clean as You Code methodology, developers can directly impact the security of the cloud native apps they create.
Read Blog post >
Common TypeScript Issues Nº 3: unused local variables and functions
We crunched the data from SonarQube for IDE to discover the top 5 most common TypeScript issues. In this 5 part series, we outline each issue and how to avoid it.
Read Blog post >
Increase developer velocity today with Clean as You Code
The Clean as You Code methodology allows developers to keep working on new and interesting projects without sacrificing quality or getting bogged down in refactoring legacy code.
Read Blog post >
We are Sonar!
Culture is a key aspect of working at Sonar. It is our binding agent; it is what we value, what we believe in, the way we work, and the way we interact. It is what makes us SonarSourcers!
Read Blog post >
Common TypeScript Issues Nº 4: Don't create and drop objects immediately
We crunched the data from SonarQube for IDE to discover the top 5 most common TypeScript issues. In this 5 part series, we outline each issue and how to avoid it.
Read Blog post >
Announcing SonarQube Server 9.9 LTS!
Big year, big announcement – the most anticipated SonarQube Server 9.9 Long-Term-Support release is here! Check out this post for all details.
Read Blog post >
Common TypeScript Issues Nº 5: Optional property declarations
We crunched the data from SonarQube for IDE to discover the top 5 most common TypeScript issues. In this 5 part series, we outline each issue and how to avoid it.
Read Blog post >
OpenEMR - Remote Code Execution in your Healthcare System
We recently discovered three vulnerabilities that allow arbitrary code execution on OpenEMR. Let’s see what we can learn from them and discuss their patches!
Read Blog post >
Vulnerability Research Highlights 2022
Our research team looks back at a great year and summarizes the highlights of their vulnerability research in 2022.
Read Blog post >