中文翻译

摘要: by

Taryn Plumb

Enterprises know AI-generated code is vulnerable; they’re shipping it anyway

Jun 9, 2026

As AI systems discover and exploit flaws at unprecedented speed, organizations...

正文

Taryn Plumb

Enterprises know AI-generated code is vulnerable; they’re shipping it anyway

Jun 9, 2026

As AI systems discover and exploit flaws at unprecedented speed, organizations are still deploying software they know contains security weaknesses.

BOY ANTHONY / Shutterstock

AI-generated code is riddled with security flaws, yet enterprises are shipping more of it than ever before. Why? Perhaps they’re over-confident, lack true visibility into security risks, or are simply choosing to ignore the problem and hope it goes away.

It’s a dangerous game to play at the dawn of the agentic AI era, as underscored in a

new report

from app security company Checkmarx.

The survey of thousands of

security leaders

exposes an underlying naivete about AI-built code and its vulnerabilities, even as tools like Anthropic’s Mythos are uncovering security flaws orders of magnitude faster than any human security team could ever hope to.

“Mythos-class models collapse the window between a vulnerability existing and a working exploit being available from months to minutes,” the report notes. Enterprises relying on traditional security tools and methods, it says, “cannot survive this reality.”

Security as an afterthought

Checkmarx’s survey of 2,350 CISOs, AppSec managers, and developers across 14 countries focused on how much AI-developed code enterprises are deploying, the vulnerabilities it introduces, how it impacts developer workflows, and overall sentiment about AI code and security posture.

Today, nearly half of production code is AI-generated, and the majority of enterprises also report that at least half their codebase is made up of open-source components, according to the report.

But the more AI-generated code that is pushed out, the more vulnerabilities are exposed. Enterprises who said 81% – 100% of their code is built by AI ship vulnerable code 3.4 times more often than businesses using AI more conservatively, relying on 20% or less AI cod


来源: Brave/cio.com

采集时间: 2026-06-10 20:16:50

AIAnthropicAI人工智能技术