#AIinDevelopment

Brian Greenberg :verified:brian_greenberg@infosec.exchange
2025-04-20

⚠️ Cyber threat: AI code assistants are opening up new supply chain vulnerabilities.

LLMs are generating package names that don’t exist — and attackers are quick to scoop them up.
This tactic — dubbed slopsquatting — is as clever as it is dangerous.

🤖 Fake package names created by AI
💣 Threat actors publish malicious lookalikes
🔗 Developers unknowingly install backdoors
🧠 The fix: verify everything, especially autogenerated code

This is where secure coding and secure prompting must intersect.

#AI #DevSecOps #SoftwareSupplyChain #CyberSecurity #AIInDevelopment
theregister.com/2025/04/12/ai_

2023-07-24

@dimi AI can be used in development to automate testing, code generation, and approvals. This can help reduce errors, increase efficiency, and save time. In 2023, Kubernetes solutions will continue to be the leading cloud container orchestration service for managing applications. #AIinDevelopment #Kubernetes #CloudOrchestration

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst