RECENT STORIES:

Addressing digital sovereignty in a data-driven world
Major Partnerships and Investment Collaborations emerged from the Sust...
Year of the Horse Kicks Off with a Multi-Category Procurement Boom on ...
Re Sustainability and Indian Oil Join Hands to Create India’s Fi...
Insilico Medicine to Announce 2025 Financial Results on March 30, 2026
Xinhua Silk Road: 34th East China Fair highlights resilience and vital...
LOGIN REGISTER
DigiconAsia
  • Features
    • Featured

      IoT trends APAC enterprises cannot ignore in 2026

      IoT trends APAC enterprises cannot ignore in 2026

      Friday, March 13, 2026, 3:02 PM Asia/Singapore | Features
    • Featured

      AI-driven manufacturing can reshape South-east Asia amid skills, cost and security challenges

      AI-driven manufacturing can reshape South-east Asia amid skills, cost and security challenges

      Wednesday, March 11, 2026, 2:49 PM Asia/Singapore | Features, Newsletter
    • Featured

      How AI is reshaping dating in Asia

      How AI is reshaping dating in Asia

      Monday, February 9, 2026, 5:00 AM Asia/Singapore | Features, Newsletter
  • News
    • Featured

      AI coding tools introduce security flaws in 87% of pull requests: report

      AI coding tools introduce security flaws in 87% of pull requests: report

      Friday, March 13, 2026, 10:40 AM Asia/Singapore | News, Newsletter
    • Featured

      EU Parliament backs stricter copyright rules for generative AI training and creator compensation

      EU Parliament backs stricter copyright rules for generative AI training and creator compensation

      Thursday, March 12, 2026, 11:03 AM Asia/Singapore | News, Newsletter
    • Featured

      Pentagon labels US AI startup’s military-use restrictions as a “supply chain risk”

      Pentagon labels US AI startup’s military-use restrictions as a “supply chain risk”

      Wednesday, March 11, 2026, 1:51 PM Asia/Singapore | News, Newsletter
  • Perspectives
  • Tips & Strategies
  • Whitepapers
  • Awards 2023
  • Directory
  • E-Learning

Select Page

News

AI coding tools introduce security flaws in 87% of pull requests: report

By DigiconAsia Editors | Friday, March 13, 2026, 10:40 AM Asia/Singapore

AI coding tools introduce security flaws in 87% of pull requests: report

Recent research tested leading agents building full apps, uncovering 143 vulnerabilities such as improper token handling across models.

In a report on coding security released on 11 March 11, 2026, an “AI-native” cybersecurity firm has claimed to discover significant security shortcomings in leading AI coding tools.

DryRun Security, an Austin, Texas-based firm, had tested Anthropic’s Claude, OpenAI’s Codex, and Google’s Gemini, by tasking them with developing two full applications — a family allergy tracker web app and a browser racing game —via sequential pull requests mimicking real engineering workflows.

Across 38 scans, 143 vulnerabilities surfaced, with 87% of pull requests introducing at least one flaw, according to a report in Yahoo news:

  • Claude had generated the most unresolved high-severity issues in the final codebases
  • Codex showed the strongest remediation, fixing more problems iteratively and ending with the fewest critical vulnerabilities
  • Gemini had placed between them, addressing some early flaws in later changes but still leaving multiple severe risks
  • None of the coding agents produced a secure product, as all overlooked key protections
  • The AI coding agents generated functional software quickly, but security was not built into their processes, and the bots often skipped essential features or botched authentication logic
  • Common failures spanned all models, including improper JSON Web Token handling, no defenses against brute-force attacks, susceptibility to token replay exploits, and weak refresh token cookie settings.
  • Authentication safeguards, when created for REST APIs, were inconsistently applied to WebSocket endpoints, exposing app segments.

These results amplify enterprise ongoing worries about AI-assisted coding. A February 2026 study had found over 25% of AI-generated code contained OWASP Top 10 vulnerabilities, but DryRun’s recent work uniquely tracks flaws compounding over full development cycles.

As software development teams speed up them projects via agents, ongoing scans during workflows—not just end-stage reviews — are vital to curb risk buildup and technical debt, according to industry observers.

Share:

PreviousCGTN AMERICA & CCTV UN: China in Springtime: China’s Development Opportunities for the World
NextIoT trends APAC enterprises cannot ignore in 2026

Related Posts

Using digitalization to bridge expectation gaps in food safety

Using digitalization to bridge expectation gaps in food safety

November 4, 2020

Standard Foods improves operations, R&D and security management with hybrid multi-cloud

Standard Foods improves operations, R&D and security management with hybrid multi-cloud

July 3, 2023

Technology and customer experience are inseparable: OCBC Indonesia

Technology and customer experience are inseparable: OCBC Indonesia

July 8, 2024

Contract logistics conglomerate expands digitalization to handle demand boom

Contract logistics conglomerate expands digitalization to handle demand boom

December 16, 2021

Leave a reply Cancel reply

You must be logged in to post a comment.

Awards Nomination Banner

gamification list

PARTICIPATE NOW

top placement

Whitepapers

  • Achieve Modernization Without the Complexity

    Achieve Modernization Without the Complexity

    Transforming IT infrastructure is crucial …Download Whitepaper
  • 5 Steps to Boost IT Infrastructure Reliability

    5 Steps to Boost IT Infrastructure Reliability

    In today's fast-evolving tech landscape, …Download Whitepaper
  • Simplify Payroll Setup for Your Small Business

    Simplify Payroll Setup for Your Small Business

    In our free guide, "How …Download Whitepaper
  • Overcoming the Challenges of Cost & Complexity in the Cloud-first Era.

    Overcoming the Challenges of Cost & Complexity in the Cloud-first Era.

    Download Whitepaper

Middle Placement

Case Studies

  • Nokia integrates all-flash data infrastructure into telco cloud for network modernization

    Nokia integrates all-flash data infrastructure into telco cloud for network modernization

    Its December 2025 upgrade supports …Read More
  • Overcoming workforce challenges in Japan’s healthcare sector with generative AI: JCHO Osaka Hospital

    Overcoming workforce challenges in Japan’s healthcare sector with generative AI: JCHO Osaka Hospital

    A digitalization initiative launching by …Read More
  • Kingspan Insulation unifies 90‑site corporate network for enhanced agility and control

    Kingspan Insulation unifies 90‑site corporate network for enhanced agility and control

    Kingspan Insulation, Expereo, global network, …Read More
  • Genspark adopts AI-driven voice automation platform to boost global communication for customers

    Genspark adopts AI-driven voice automation platform to boost global communication for customers

    Genspark, Twilio, AI voice automation, …Read More

Bottom Sidebar

Other News

  • Major Partnerships and Investment Collaborations emerged from the Sustainable Markets Initiative’s annual CEO Summit at Hampton Court Palace, as Global Business Leaders accelerated action on the Sustainable Transition

    March 14, 2026
    Over 300 global CEOs, international …Read More »
  • Year of the Horse Kicks Off with a Multi-Category Procurement Boom on Yiwugo

    March 13, 2026
    YIWU, China, March 13, 2026 …Read More »
  • Re Sustainability and Indian Oil Join Hands to Create India’s First Integrated Used Oil Circular Economy Ecosystem

    March 13, 2026
    MUMBAI, India, March 13, 2026 …Read More »
  • Insilico Medicine to Announce 2025 Financial Results on March 30, 2026

    March 13, 2026
    CAMBRIDGE, Mass., March 13, 2026 …Read More »
  • Xinhua Silk Road: 34th East China Fair highlights resilience and vitality in foreign trade

    March 13, 2026
    BEIJING, March 13, 2026 /PRNewswire/ …Read More »
  • Our Brands
  • CybersecAsia
  • MartechAsia
  • Home
  • About Us
  • Contact Us
  • Sitemap
  • Privacy & Cookies
  • Terms of Use
  • Advertising & Reprint Policy
  • Media Kit
  • Subscribe
  • Manage Subscriptions
  • Newsletter

Copyright © 2026 DigiconAsia All Rights Reserved.