Even seemingly simple engineering tasks – like updating an API – can become monumental undertakings when youre dealing with millions of lines of code and thousands of engineers, especially if the changes are security-related. Nowhere is this more evident than in mobile security, where a single vulnerability class can be replicated across hundreds of call sites scattered across a sprawling multi-app codebase serving billions of users.

Méta’s product security team has developed a two-pronged strategy to address this issue:

  • Designing secure-by-default frameworks that wrap potentially insecure Android OS APIs, making the secure path the easiest path for developers, et
  • Use generative AI to automate the migration of existing code to these frameworks at scale.

The result is a system that can propose, validate, and submit security patches across millions of lines of code with minimal effort from the engineers who own them.

Dans cet épisode du podcast Meta Tech: Pascal Hartig speaks with Alex and Tanu from Metas product security team about the challenges and lessons learned on the journey to making Metas mobile frameworks more secure to a degree that few companies have ever experienced. Tune in to this episode and join us as we explore the exciting intersections of security, automation and AI in mobile development.

Téléchargez ou écoutez l'épisode ci-dessous:

Vous pouvez également trouver l'épisode partout où vous obtenez vos podcasts, y compris:

Le Le podcast méta-tech est un podcast de Meta où nous mettons en avant le travail des ingénieurs Meta à tous les niveaux – des frameworks de bas niveau aux fonctionnalités de l'utilisateur final.

Envoyez-nous vos commentaires Instagram, Sujetsou X.

Et si vous souhaitez en savoir plus sur les opportunités de carrière chez Meta, visitez la page Meta Carrières.