The new state standards about safe development, what's inside and is it so scary?
-
40 min
Using static code analyzers is one of the conditions for developing secure software.
But questions arose:
- Which tools to choose and what should they be able to do?
- How to "correctly" build a process and integrate an analyzer?
The new GOST (Russian National Standard), released in April of this year - GOST R 71207-2024: "Static analysis of software" - will help with the answers to these questions. In the report, we will consider the most important topics of GOST, its relevance, new requirements for projects, how to organize the process and conduct analysis, and much more.