RECENT STORIES:

Addressing digital sovereignty in a data-driven world
PT Telkom Indonesia (Persero) Tbk 2025 Annual Report on Form 20-F
SwitchBot Launches Lock Vision Series, the World’s First Smart D...
JX Luxventure Group Inc. Announces Fiscal Year 2025 Financial Results:...
NYSE Content Update: Lynn Martin Calls for AI Coordination as U.S. Bus...
EZGO Announces 1-for-150 Reverse Share Split Effective May 19, 2026
LOGIN REGISTER
DigiconAsia
  • Features
    • Featured

      Moving into the quantum economy with AI and synthetic data

      Moving into the quantum economy with AI and synthetic data

      Thursday, April 30, 2026, 3:01 PM Asia/Singapore | Features, Newsletter
    • Featured

      The double-edged knife that boomeranged: Warnings about AI comes alive in one executive’s ruin

      The double-edged knife that boomeranged: Warnings about AI comes alive in one executive’s ruin

      Monday, April 27, 2026, 10:56 AM Asia/Singapore | Features, Newsletter
    • Featured

      Is educational technology in Asian primary schools evolving with the AI impact?

      Is educational technology in Asian primary schools evolving with the AI impact?

      Thursday, March 26, 2026, 2:02 PM Asia/Singapore | Features
  • News
    • Featured

      Survey flags privacy, sovereignty, and infrastructure gaps in enterprise AI

      Survey flags privacy, sovereignty, and infrastructure gaps in enterprise AI

      Friday, May 15, 2026, 2:09 PM Asia/Singapore | News
    • Featured

      Workers found gaming AI agents for tokenmaxxing to get ahead of peers

      Workers found gaming AI agents for tokenmaxxing to get ahead of peers

      Friday, May 15, 2026, 12:24 PM Asia/Singapore | News
    • Featured

      Researchers design AI system that optimizes antimicrobial peptides to combat drug resistant bacteria

      Researchers design AI system that optimizes antimicrobial peptides to combat drug resistant bacteria

      Friday, May 15, 2026, 10:26 AM Asia/Singapore | News
  • Perspectives
  • Tips & Strategies
  • Whitepapers
  • Directory
  • E-Learning

Select Page

News

AI coding tools introduce security flaws in 87% of pull requests: report

By DigiconAsia Editors | Friday, March 13, 2026, 10:40 AM Asia/Singapore

AI coding tools introduce security flaws in 87% of pull requests: report

Recent research tested leading agents building full apps, uncovering 143 vulnerabilities such as improper token handling across models.

In a report on coding security released on 11 March 11, 2026, an “AI-native” cybersecurity firm has claimed to discover significant security shortcomings in leading AI coding tools.

DryRun Security, an Austin, Texas-based firm, had tested Anthropic’s Claude, OpenAI’s Codex, and Google’s Gemini, by tasking them with developing two full applications — a family allergy tracker web app and a browser racing game —via sequential pull requests mimicking real engineering workflows.

Across 38 scans, 143 vulnerabilities surfaced, with 87% of pull requests introducing at least one flaw, according to a report in Yahoo news:

  • Claude had generated the most unresolved high-severity issues in the final codebases
  • Codex showed the strongest remediation, fixing more problems iteratively and ending with the fewest critical vulnerabilities
  • Gemini had placed between them, addressing some early flaws in later changes but still leaving multiple severe risks
  • None of the coding agents produced a secure product, as all overlooked key protections
  • The AI coding agents generated functional software quickly, but security was not built into their processes, and the bots often skipped essential features or botched authentication logic
  • Common failures spanned all models, including improper JSON Web Token handling, no defenses against brute-force attacks, susceptibility to token replay exploits, and weak refresh token cookie settings.
  • Authentication safeguards, when created for REST APIs, were inconsistently applied to WebSocket endpoints, exposing app segments.

These results amplify enterprise ongoing worries about AI-assisted coding. A February 2026 study had found over 25% of AI-generated code contained OWASP Top 10 vulnerabilities, but DryRun’s recent work uniquely tracks flaws compounding over full development cycles.

As software development teams speed up them projects via agents, ongoing scans during workflows—not just end-stage reviews — are vital to curb risk buildup and technical debt, according to industry observers.

Share:

PreviousCGTN AMERICA & CCTV UN: China in Springtime: China’s Development Opportunities for the World
NextIoT trends APAC enterprises cannot ignore in 2026

Related Posts

GenAI chatbot sycophancy persists as makers struggle to manage

GenAI chatbot sycophancy persists as makers struggle to manage

October 27, 2025

2024: Outdated dumb chatbots will give way to “evolved” CX agents

2024: Outdated dumb chatbots will give way to “evolved” CX agents

January 22, 2024

Dark data creates a black hole of carbon emission: report

Dark data creates a black hole of carbon emission: report

April 22, 2020

Generative AI is making the money laundering and financial fraud landscape more complex

Generative AI is making the money laundering and financial fraud landscape more complex

July 31, 2023

Leave a reply Cancel reply

You must be logged in to post a comment.

Awards Nomination Banner

gamification list

PARTICIPATE NOW

top placement

Whitepapers

  • Achieve Modernization Without the Complexity

    Achieve Modernization Without the Complexity

    Transforming IT infrastructure is crucial …Download Whitepaper
  • 5 Steps to Boost IT Infrastructure Reliability

    5 Steps to Boost IT Infrastructure Reliability

    In today's fast-evolving tech landscape, …Download Whitepaper
  • Simplify Payroll Setup for Your Small Business

    Simplify Payroll Setup for Your Small Business

    In our free guide, "How …Download Whitepaper
  • Overcoming the Challenges of Cost & Complexity in the Cloud-first Era.

    Overcoming the Challenges of Cost & Complexity in the Cloud-first Era.

    Download Whitepaper

Middle Placement

Case Studies

  • Liverpool FC to deliver more personalized, real-time digital fan experiences with AI

    Liverpool FC to deliver more personalized, real-time digital fan experiences with AI

    The football club will deepen …Read More
  • Balancing brand heritage and modern service with AI-powered customer experience

    Balancing brand heritage and modern service with AI-powered customer experience

    Balancing brand heritage and modern …Read More
  • Overhauling IT boosts business sustainability, efficiency amid motorsport carbon pressures: McLaren

    Overhauling IT boosts business sustainability, efficiency amid motorsport carbon pressures: McLaren

    The firm’s global IT team …Read More
  • Nokia integrates all-flash data infrastructure into telco cloud for network modernization

    Nokia integrates all-flash data infrastructure into telco cloud for network modernization

    Its December 2025 upgrade supports …Read More

Bottom Sidebar

Other News

  • PT Telkom Indonesia (Persero) Tbk 2025 Annual Report on Form 20-F

    May 16, 2026
    JAKARTA, Indonesia, May 16, 2026 …Read More »
  • SwitchBot Launches Lock Vision Series, the World’s First Smart Deadbolt Locks with 3D Structured-Light Facial Recognition

    May 15, 2026
    TOKYO, May 15, 2026 /PRNewswire/ …Read More »
  • JX Luxventure Group Inc. Announces Fiscal Year 2025 Financial Results: Revenue Surges 66% to $83.0 Million

    May 15, 2026
    HAIKOU, China, May 15, 2026 …Read More »
  • NYSE Content Update: Lynn Martin Calls for AI Coordination as U.S. Business Representative in Shanghai

    May 15, 2026
    NYSE issues a pre-market daily …Read More »
  • EZGO Announces 1-for-150 Reverse Share Split Effective May 19, 2026

    May 15, 2026
    CHANGZHOU, China, May 15, 2026 …Read More »
  • Our Brands
  • CybersecAsia
  • MartechAsia
  • Home
  • About Us
  • Contact Us
  • Sitemap
  • Privacy & Cookies
  • Terms of Use
  • Advertising & Reprint Policy
  • Media Kit
  • Subscribe
  • Manage Subscriptions
  • Newsletter

Copyright © 2026 DigiconAsia All Rights Reserved.