News (ZU)

I-Betterleaks iqala futhi ivela njengomlandeli womthombo ovulekile we-Gitleak

Código, HTML, código fonte de programação
Foto: Código, HTML, código fonte de programação - Sashkin/ Shutterstock.com

Isithwebuli esiyimfihlo somthombo ovulekile, Betterleaks, sikhululwe ngokusemthethweni, sizibeka njengomlandeli we-Gitleaks edumile. I-Desenvolvido ngomdali wokuqala wethuluzi langaphambilini, i-Betterleaks ithembisa ukushesha nokuvumelana nezimo, yethula imisebenzi ethuthukisiwe yokuthola ulwazi olubucayi.

Iphrojekthi entsha ibonakala njengenguquko ebalulekile esimweni sokuphepha sohlelo lokusebenza, okuhloswe ngayo ukuhlangabezana nezidingo ezikhulayo zamathuluzi asebenza kahle kakhulu ekuhlonzeni izimfihlo ezisekelweni zekhodi. I-Sua yezakhiwo kanye nesethi yesici yakhelwe ukunqoba imikhawulo yezixazululo ezikhona kuyilapho inikeza isendlalelo esengeziwe sokuvikela.

Ixhaswe yi-Aikido Security, i-Betterleaks isebenza njengohlelo oluzimele lomthombo ovulekile, oluholwa imodeli yokuphatha umphakathi futhi lusatshalaliswe ngaphansi kwe-MIT License. Indlela ye-Essa ihlose ukuqinisekisa ukubeka izinto obala, ukubambisana kanye nokwenza ngcono okuqhubekayo kwethuluzi ngumphakathi wonjiniyela nochwepheshe bezokuphepha.

I-genesis yephrojekthi ye-Betterleaks

Isinyathelo sokuthuthukisa i-Betterleaks sizuze umfutho ngemva kokuba umdali wangempela we-Gitleaks elahlekelwe ukulawula okugcwele kwendawo yokugcina kanye negama lephrojekthi yangaphambilini. Esse ukubuyisela emuva, nakuba kuzisola, kuvule ithuba elisha lokuklama ithuluzi eliqine nakakhulu eliqondaniswe nezidingo zamanje zemakethe.

Umthuthukisi, manje ohlanganisa i-Aikido Security njenge-Chefe ye-Varredura ye-Segredos, uzibophezele ekwakheni ithuluzi lokuthola imfihlo lomthombo ovulekile onamandla kakhulu elitholakalayo. Ukushintshela ku-Aikido Security kuqinisa umgomo wokuletha isixazululo esisezingeni eliphezulu emphakathini wokuphepha nokuthuthukiswa komphakathi.

Inguqulo engu-1.0 emisha yokuphepha

Inguqulo yokuqala ye-Betterleaks isivele ihlanganisa izici ezimbalwa eziyehlukanisayo emakethe. Ithuluzi laliklanyelwe ukunikeza ukutholwa okuyimfihlo okunembe kakhudlwana futhi okuphelele, okuhlanganisa ubuchwepheshe besimanje bokuphepha nezindlela.

Phakathi kwezinto ezintsha eziqanjiwe zenguqulo 1.0, okulandelayo kuyagqama:
Ukuqinisekisa kuchazwa yimithetho:I-Utiliza ukuya ku-Linguagem ye-Expressão Comum (CEL) yokuqinisekisa okuguquguqukayo, okwenziwe ngendlela oyifisayo.
Ukuhlola Ukusebenza Kwethokheni ye-BPE:Avalia ukusebenza kwamathokheni okusekelwe ku-Byte Pair Encoding yokwenza amathokheni, okuthuthukisa inqubo yokuhlonza.
Ukutholwa okuzenzakalelayo kwezimfihlo ezibhalwe ngekhodi:Identifica izimfihlo ezizenzakalelayo ezifakwe ikhodi ephindwe kabili nekathathu, okwandisa ukufakwa.
I-Go ye-architecture ehlanzekile:Garante ukusebenza okuphezulu nokuzinza okukhulu kokusebenza.
Imithetho enwetshiwe yokuthola abahlinzeki:Abrange ububanzi obubanzi bezinsizakalo nezinkundla lapho izimfihlo zingatholakala khona.
Ukuhlola okufanayo kwamakhosombe e-Git:Permite ukuskena ngesikhathi esisodwa kwamakhosombe amaningi, kusheshisa inqubo.

Ukuhambisana nezikhombisi-ndlela zesikhathi esizayo

Enye yezinsika ze-Betterleaks igcina ukusebenzisana nokugeleza komsebenzi okukhona kwe-Gitleaks. I-Isso isho ukuthi izinketho zomugqa womyalo namafayela okumisa asevele esetshenzisiwe angasebenza ngaphandle kwesidingo sokuguqulwa, enze uguquko lube lula kubasebenzisi. I-Além yokuskena okushesha kakhulu, lokhu kuhambisana kwamasu kunciphisa ijika lokufunda nokuzivumelanisa nezimo.

Ithimba labathuthukisi selivele libalule icebo elibalulekile lezinguqulo zesikhathi esizayo ze-Betterleaks. Okulindelekile ukuhlanganisa ukusebenza okuthuthuke nakakhulu, njengokuskena kwekhodi yomthombo okuphelele kakhulu, ukutholwa kusizwa amamodeli olimi lwezinga elikhulu (LLM), nokuhoxiswa okuzenzakalelayo kwezimfihlo. Ukuthuthukiswa kwe-Essas kuthembisa ukuphakamisa izinga lokuphepha komthombo ovulekile ngokunikeza ukuvikeleka okusebenzayo ekuvuzeni.

Umphakathi osemuva kwentuthuko

Impumelelo nokuqhubeka kwe-Betterleaks kuncike ekusebenzisaneni komphakathi obambe iqhaza kanye nochwepheshe abadumile. Iphrojekthi isivele inokusekelwa abahlanganyeli abambalwa, abaletha ulwazi nolwazi oluvela emikhakheni ehlukene ukuze baqhubeke bethuthukisa ithuluzi.

Abanikeli abafakiwe bahlanganisa i-Richard Gomez, ye-Royal Bank ye-Canada; Braxton Plaxco, kusukela ku-Red Hat; kanye ne-Ahrav Dutta, kusukela ku-Amazon. Ukubamba iqhaza kwalaba chwepheshe abavela ezinkampanini eziholayo kuqinisa ukwethembeka namandla e-Betterleaks njengesixazululo esiqinile nesithembekile sokutholwa okuyimfihlo. Ukuhlanganiswa kwethuluzi ku-ecosystem yokuphepha yomthombo ovulekile esekelwa yi-Aikido Security, ehlanganisa amaphrojekthi afana ne-Aikido Safe Chain, Aikido Zen, Aikido Intel kanye ne-Opengrep, kuqinisa futhi indawo yayo emakethe.

Ithuluzi elenzelwe i-AI ecosystems

Isixhumi esibonakalayo somugqa womyalo we-Betterleaks (CLI) siklanyelwe ukusiza bobabili abathuthukisi nabalingisi bobuhlakani bokwenziwa. Isici se-Essa sinika amandla ukuskena okuzenzakalelayo okuphumelelayo ezindaweni ezithuthukisiwe ezisizwa yi-AI njenge-Claude Code, Codex, ne-Cursor.

Ukunwetshwa okuqhubekayo kwamandla okuthola

Iziphindaphindo ezilandelayo ze-Betterleaks zihlose ukwandisa kakhulu amandla ako okuskena. I-Serão yethule izindlela zokuhlaziya okujulile kwekhodi yomthombo, iqinisekisa ukuthi akukho mfihlo enganakwa, ngisho nasezingomeni eziyinkimbinkimbi nezinevolumu ephezulu.

Ukwengeza, onjiniyela bahlola ukuhlanganiswa okujulile kobuchwepheshe be-Inteligência Artificial, ngokutholwa okusizwa yi-LLM okuthembisa ukuhluza ukuhlonza amaphethini nezimo ezingase zinganakwa izindlela ezivamile. Amandla okwenza imephu emvume nawo azothuthukiswa, anikeze ukuqonda okucacile kokuthi izimfihlo zingadalulwa kuphi futhi kanjani.

Ukugxila ekuthuthukisweni kokusebenza okuqhubekayo kuhlala kuyinto ehamba phambili, iqinisekisa ukuthi i-Betterleaks ayitholi nje kuphela okwengeziwe, kodwa ikwenza lokho ngokushesha nangezinsiza ezimbalwa zokubala. Este ukuzibophezela ezikhundleni zokusungula Betterleaks njengethuluzi elibalulekile lokuvikela ukuphulwa kwedatha enkathini yedijithali.

Izinguqulo zesikhathi esizayo kufanele futhi zibandakanye ukuhoxiswa okuzenzakalelayo kwezimfihlo, isici esibalulekile sokunciphisa umthelela wanoma yikuphi ukuvuza okutholiwe. I-Essa ukusebenza okumatasa kumelela inqubekelaphambili ebalulekile ekuphathweni kwezokuphepha, ukunciphisa iwindi lokuchayeka nobungozi ezinhlanganweni.