GitHub boosts Copilot with agents, new models, and MCP support

GitHub mascot toy with Groot as the company enhances its AI-powered coding assistant, Copilot, to make it more autonomous and integrated with developers' workflows witha new agent mode in Visual Studio Code , enhanced Model Context Protocol (MCP) support, and the introduction of several new large language models (LLMs).

GitHub is enhancing its AI-powered coding assistant, Copilot, to make it more autonomous and integrated with developers' workflows.

Headlining the updates is the general availability rollout of 'Agent Mode' in Visual Studio Code, enhanced Model Context Protocol (MCP) support, and the introduction of several new large language models (LLMs) accessible via a premium request system.

Thomas Dohmke, CEO of GitHub, said: "GitHub Copilot is getting a whole lot more agentic with...

GITEX GLOBAL in Asia: The largest tech show in the world

23-25 April 2025 | Marina Bay Sands, Singapore

GITEX ASIA 2025 will bring together 700+ tech companies, featuring 400+ startups and digital promotion agencies, and 250+ global investors & VCs from 60+ countries.

The event will serve as a bridge between the Eastern and Western technology ecosystems and feature 180+ hours of expert insights from 220 global thought leaders.

GITEX ASIA 2025 is set to foster cross-border collaboration, investment, and...

Microsoft Copilot continues to expose private GitHub repositories 

Variety of mobile AI apps on a smartphone illustrating an investigation by security company Lasso following a LinkedIn post that caused alarm by alleging that ChatGPT (and, by association, the Microsoft Copilot tool) was capable of accessing data from private GitHub repositories.

In August 2024, a LinkedIn post caused alarm by alleging that ChatGPT (and, by association, Microsoft Copilot) was capable of accessing data from private GitHub repositories. Such a claim, if true, could have significant ramifications for data security and privacy.

Eager to uncover the truth behind the claim, the research team at Lasso, a digital security company, undertook a thorough investigation. What they found was a digital conundrum involving cached, publicly exposed, and...

Google unveils free Gemini AI coding tools for developers  

Mobile displaying the Gemini AI icon as Google Cloud rolls out out free Gemini-powered artificial intelligence coding and code review tools to software developers across the globe.

Google Cloud is rolling out free Gemini AI coding and code review tools to software developers across the globe.

The tech giant has announced the public preview of Gemini Code Assist for individuals and Gemini Code Assist for GitHub.

According to Google, this launch aims to enable anyone – from students working on academic projects to startup developers testing new ideas – to enhance productivity and code quality without worrying about cost or restrictive usage...

Matan Giladi, Apiiro: Guarding your code against malicious patterns

Knight guarding code on a computer illustrating open-source resources released by Apiiro to help protect software developers and their projects against hacking through vulnerabilities in supply chains.

Malicious code is proving as persistent a threat as ever, despite years of awareness campaigns and ongoing incidents that demonstrate the vulnerabilities in software supply chains.

This year, Apiiro’s security research teams detected and analysed thousands of malicious code instances found in repositories and packages. What’s alarming is the ease with which these attacks exploit fundamental gaps in workflows, from dependency managers to build systems.

Highlighting...

Best practices for CI/CD migration: The GitHub Enterprise example

Photo of the Octocat mascot illustrating an article on the best practices for developers to assist with their migration to CI/CD platforms with GitHub Enterprise used as an example.

Continuous Integration/Continuous Delivery (CI/CD) software – meaning solutions that teams use to build, test, and deploy applications – has come a long way over the past decade.

Whereas organisations once cobbled together CI/CD pipelines using disparate open source tools, they now have a plethora of end-to-end, vendor-supported enterprise CI/CD platforms that they can use instead. Because these solutions offer everything teams need to deliver software, they are simpler to...

Security engineer uncovers multiple Git vulnerabilities

Groot and GitHub mascot Octocat reading a newspaper as a security engineer uncovers multiple critical Git vulnerabilities that exposed millions of software developers to credential theft.

A security engineer has revealed a series of critical vulnerabilities in Git tools that exposed millions of developers to credential theft.

RyotaK, a security engineer at GMO Flatt Security Inc., was bug hunting for the GitHub Bug Bounty program in October 2024 when they discovered weaknesses in GitHub Desktop, Git Credential Manager, Git LFS, GitHub CLI, and GitHub Codespaces—all stemming from improper input validation and handling of text-based protocols.

Git Credential...

Operation Digital Eye: Chinese hackers exploit Visual Studio Code

A digital eye illustrating cybersecurity researchers unveiling the "Operation Digital Eye" cyberespionage operation linked to a suspected Chinese Advanced Persistent Threat (APT) group that exploits the Remote Tunnels feature of Visual Studio Code (VS Code).

A sophisticated cyberespionage operation dubbed "Operation Digital Eye" has been attributed to a suspected Chinese Advanced Persistent Threat (APT) group. 

According to Aleksandar Milenkoski, Senior Threat Researcher at SentinelLabs, and Luigi Martire, Senior Malware Analyst at Tinexta Cyber, the campaign targeted large business-to-business (B2B) IT service providers in southern Europe between late June and mid-July 2024.

Visual Studio Code hijacked

In what...

Michel Isnard, GitLab: Transforming software development with AI

Image of a digital assistant helping a software developer, illustrating the views of Michel Isnard from GitLab on how AI can help developers transform their development workflows and enhance productivity

Michel Isnard, Vice President of EMEA at GitLab, provides a unique perspective on the role of AI in software development.

The implementation of AI technologies, particularly generative AI, offers a promising avenue for developers looking to supercharge their processes. According to a recent GitLab survey, many UK businesses are accelerating their software release cycles—yet only a third have integrated AI into their processes. 

However, alongside the...

Kingfisher plc builds a better developer experience with GitLab

Kingfisher plc builds a better developer experience with GitLab

Kingfisher plc, the home improvement giant behind brands like B&Q and Screwfix, is taking steps to improve how its developers work.

The company has been using GitLab to shake up its software development process, focusing on security, streamlining tools, and automating repetitive tasks. The ultimate goal? To make life easier for its teams while delivering better results, faster.

At the recent GitLab DevSecOps World Tour in London, Parmar, one of Kingfisher’s tech...