• Platform
    The intelligent orchestration platform for DevSecOps
    Explore our Platform
    GitLab Duo Agent Platform
    Agentic AI for the entire software lifecycle
    Meet GitLab Duo
    Why GitLab
    See the top reasons enterprises choose GitLab
    Learn more
  • Automation
    • CI/CD
    • GitLab Duo Agent Platform
    • Source Code Management
    • Automated Software Delivery
    Security
    • Application Security Testing
    • Software Supply Chain Security
    • Software Compliance
    Measurement
    • Visibility & Measurement
    • Value Stream Management
    • Analytics & Insights
    View all Solutions
    GitLab for
    • Enterprise
    • Small Business
    • Public Sector
  • Pricing
  • Getting started
    • Install
    • Quick start guides
    • Learn
    • Product documentation
    • Best practice videos
    • Integrations
    Discover
    • Customer success stories
    • Blog
    • Remote
    Connect
    • GitLab Services
    • Community
    • Forum
    • Events
    • Partners
    View all resources
    the source promo card

    Insights for the future of software development

    • About
    • Jobs
    • Events
    • Leadership
    • Team
    • Handbook
    • Investor relations
    • Trust Center
    • AI Transparency Center
    • Newsletter
    • Press
    • Talk to sales
    • Support portal
    • Customer portal
Talk to sales
Sign in
To search repositories and projects, login to gitlab.com.
Suggestions
GitLab Duo Agent PlatformCode Suggestions (AI)CI/CDGitLab on AWSGitLab on Google CloudWhy GitLab?
Talk to sales
See how agentic AI transforms software delivery
Blog
Joern Schneeweisz
Joern Schneeweisz headshot

Joern Schneeweisz

Recent posts

Security Labs

Git security audit: Inside the hunt for - and discovery of - CVEs

Get a behind-the-scenes look at how I helped discover the vulnerability that became CVE-2022-41903.

Security

Terraform as part of the software supply chain, Part 1 - Modules and Providers

We examine the supply chain aspects of Terraform, starting with a closer look at malicious Terraform modules and providers and how you can better secure them.

Security

A brief look at Gitpod, two bugs, and a quick fix

Our security researcher takes a look at Gitpod and finds some access tokens under the carpet.

Unfiltered

Switching “sides” in security

How does product security work differ from pen testing and hacking all the things?

Security

How to play GitLab's Capture the Flag at home

Our AppSec team built and ran a CTF, and now it's available for you to play at home.

Security

How to exploit parser differentials

Your guide to abusing 'language barriers' between web components.

Security

Shopping for an admin account via path traversal

How to exploit a path traversal issue to gain an admin account

Stay in the know with GitLab's monthly newsletter

All fields required

Ready to get started?

See what your team could do with a unified DevSecOps Platform

Get free trial

Find out which plan works best for your team

Learn about pricing

Learn about what GitLab can do for your team

Talk to an expert
®

Footer links

Pricing

  • View plans
  • Why Premium?
  • Why Ultimate?

Contact Us

  • Contact sales
  • Support portal
  • Customer portal
  • Status
  • Terms of use
  • Privacy statement

Product

  • DevSecOps platform
  • AI-Assisted Development

Topics

  • CICD
  • GitOps
  • DevOps
  • Version Control
  • DevSecOps
  • Cloud Native
  • AI for Coding
  • Agentic AI

Solutions

  • Application Security Testing
  • Automated software delivery
  • Agile development
  • SCM
  • CICD
  • Value stream management
  • GitOps
  • Enterprise
  • Small business
  • Public sector
  • Education
  • Financial services

Resources

  • Install
  • Quick start guides
  • Learn
  • Product documentation
  • Blog
  • Customer success stories
  • Remote
  • GitLab Services
  • Community
  • Forum
  • Events
  • Partners

Company

  • About
  • Jobs
  • Leadership
  • Team
  • Handbook
  • Investor relations
  • Sustainability
  • Diversity, inclusion and belonging (DIB)
  • Trust Center
  • Newsletter
  • Press
  • Modern Slavery Transparency Statement

Git is a trademark of Software Freedom Conservancy and our use of 'GitLab' is under license

View page sourceEdit this pagePlease contribute

© 2026 GitLab Inc.