Nemeski@lemm.ee to Cybersecurity@sh.itjust.worksEnglish · 16 days agoAI-hallucinated code dependencies become new supply chain riskwww.bleepingcomputer.comexternal-linkmessage-square3linkfedilinkarrow-up165arrow-down10
arrow-up165arrow-down1external-linkAI-hallucinated code dependencies become new supply chain riskwww.bleepingcomputer.comNemeski@lemm.ee to Cybersecurity@sh.itjust.worksEnglish · 16 days agomessage-square3linkfedilink
minus-squarecan@sh.itjust.workslinkfedilinkEnglisharrow-up8·16 days ago The only way to mitigate this risk is to verify package names manually and never assume a package mentioned in an AI-generated code snippet is real or safe. We’re doomed
We’re doomed