AI
Signed, Attested, and Malicious: The Software Supply Chain Has a Deepfake Problem
A developer pulls a package from a reliable repo. It is signed, has provenance, and has been scanned. And then…it contains malware. That is no longer hypothetical. When the Miasma worm tore ...
Harness Extends DevOps Reach to the Realm of AI Agents
Harness today extended the reach of its core continuous integration/continuous delivery (CI/CD) platform to enable DevOps teams to build and deploy artificial intelligence (AI) agents. At the core of that capability are ...
AI Moved the Bottleneck From Writing Code to Understanding and Trusting It
AI coding boosts velocity, but without stronger review, governance and codebase visibility, teams risk higher costs, security gaps and production failures. TL;DR ...
xAI Open-Sources Grok Build Coding Agent After Cloud Upload Exposes SSH Keys, Repos
xAI has published the full source code for Grok Build, its terminal-based AI coding agent, on GitHub under an Apache 2.0 license. The release lands three days after a security researcher showed ...
AI-Generated Code Is Cheap But the Context Infrastructure Behind It Is Not
The cost curve for generating code with AI has moved in one direction, and it has moved fast. What used to require a senior engineer's full attention for an afternoon can now ...
Why You Need AI Agent Security Validation in Software Testing
Engineering teams have been racing for the last two years to deploy AI agents that can find bugs faster than any QA team ever could. Autonomous testing agents can crawl through codebases, ...
SmartBear Tightens Integration Between AI Coding and Testing Tools
SmartBear this week revealed it is narrowing the divide between coding and testing by integrating its platform with artificial intelligence (AI) coding tools. Sheryl Koenigsberg, senior vice president of product marketing at ...
Anaconda Doesn’t Want to Be Just the Python Company Anymore
The question is no longer whether Anaconda wants to be more than the Python company. It is how much of the AI development stack DeSanto ultimately intends to own ...
Atlassian Extends AI Reach of Jira Into Agentic Engineering Workflows
Atlassian today extended the scope of tasks that artificial intelligence (AI) can automate directly from its Jira project management software, including assigning work to an AI coding agent. Initially, Jira integration with ...
‘HalluSquatting’ Compromises AI Coding Agents to Install Malware, Create Botnets
Hallucinations have been an ongoing problem since OpenAI first introduced its ChatGPT chatbot in November 2022, highlighting generative AI’s tendency to generate plausible but false or misleading information and its inability to ...
IBM Bob Gets Multi-Agent Muscle and a Cost Dashboard for Enterprise Coding
IBM Bob adds multi-agent coordination, cost analytics, and modernization workflows for IBM Z, IBM i, and Java as AI governance takes center stage ...
GhostApproval Flaw Featuring Decades-Old Feature Found in Six AI Coding Tools
A security flaw found in six popular AI coding agents can let attackers abuse a decades-old feature in Unix to trick an AI agent into giving them control of a developer’s system ...

