LOGIN REGISTER
DigiconAsia
  • Features
    • Featured

      Is educational technology in Asian primary schools evolving with the AI impact?

      Is educational technology in Asian primary schools evolving with the AI impact?

      Thursday, March 26, 2026, 2:02 PM Asia/Singapore | Features
    • Featured

      The rise of situational intelligence

      The rise of situational intelligence

      Thursday, March 19, 2026, 10:55 AM Asia/Singapore | Features
    • Featured

      Balancing brand heritage and modern service with AI-powered customer experience

      Balancing brand heritage and modern service with AI-powered customer experience

      Wednesday, March 18, 2026, 9:51 AM Asia/Singapore | Case Studies, Customer Experience, Features
  • News
    • Featured

      Layoff strategy 2026: CEOs cite AI to justify layoffs amid productivity gains

      Layoff strategy 2026: CEOs cite AI to justify layoffs amid productivity gains

      Wednesday, April 1, 2026, 3:31 PM Asia/Singapore | Future of Work, News
    • Featured

      Collaborative online encyclopedia tightens rules against AI-generated contributed content

      Collaborative online encyclopedia tightens rules against AI-generated contributed content

      Wednesday, April 1, 2026, 10:00 AM Asia/Singapore | News, Newsletter
    • Featured

      Data analysis finds emerging markets could outpace developed in digital spending

      Data analysis finds emerging markets could outpace developed in digital spending

      Tuesday, March 31, 2026, 11:02 AM Asia/Singapore | News, Newsletter
  • Perspectives
  • Tips & Strategies
  • Whitepapers
  • Awards 2023
  • Directory
  • E-Learning

Select Page

News

AI coding tools introduce security flaws in 87% of pull requests: report

By DigiconAsia Editors | Friday, March 13, 2026, 10:40 AM Asia/Singapore

AI coding tools introduce security flaws in 87% of pull requests: report

Recent research tested leading agents building full apps, uncovering 143 vulnerabilities such as improper token handling across models.

In a report on coding security released on 11 March 11, 2026, an “AI-native” cybersecurity firm has claimed to discover significant security shortcomings in leading AI coding tools.

DryRun Security, an Austin, Texas-based firm, had tested Anthropic’s Claude, OpenAI’s Codex, and Google’s Gemini, by tasking them with developing two full applications — a family allergy tracker web app and a browser racing game —via sequential pull requests mimicking real engineering workflows.

Across 38 scans, 143 vulnerabilities surfaced, with 87% of pull requests introducing at least one flaw, according to a report in Yahoo news:

  • Claude had generated the most unresolved high-severity issues in the final codebases
  • Codex showed the strongest remediation, fixing more problems iteratively and ending with the fewest critical vulnerabilities
  • Gemini had placed between them, addressing some early flaws in later changes but still leaving multiple severe risks
  • None of the coding agents produced a secure product, as all overlooked key protections
  • The AI coding agents generated functional software quickly, but security was not built into their processes, and the bots often skipped essential features or botched authentication logic
  • Common failures spanned all models, including improper JSON Web Token handling, no defenses against brute-force attacks, susceptibility to token replay exploits, and weak refresh token cookie settings.
  • Authentication safeguards, when created for REST APIs, were inconsistently applied to WebSocket endpoints, exposing app segments.

These results amplify enterprise ongoing worries about AI-assisted coding. A February 2026 study had found over 25% of AI-generated code contained OWASP Top 10 vulnerabilities, but DryRun’s recent work uniquely tracks flaws compounding over full development cycles.

As software development teams speed up them projects via agents, ongoing scans during workflows—not just end-stage reviews — are vital to curb risk buildup and technical debt, according to industry observers.

Share:

PreviousCGTN AMERICA & CCTV UN: China in Springtime: China’s Development Opportunities for the World
NextIoT trends APAC enterprises cannot ignore in 2026

Related Posts

Which is more important for AVs — data connectivity or road connectivity?

Which is more important for AVs — data connectivity or road connectivity?

August 31, 2022

Five tech firms join forces to streamline 3D graphics innovation

Five tech firms join forces to streamline 3D graphics innovation

August 10, 2023

Omnichannel marketing: A buzzword whose time has come?

Omnichannel marketing: A buzzword whose time has come?

August 27, 2020

Fake news is mild compared to insidious media manipulation

Fake news is mild compared to insidious media manipulation

August 25, 2023

Leave a reply Cancel reply

You must be logged in to post a comment.

Awards Nomination Banner

gamification list

PARTICIPATE NOW

top placement

Whitepapers

  • Achieve Modernization Without the Complexity

    Achieve Modernization Without the Complexity

    Transforming IT infrastructure is crucial …Download Whitepaper
  • 5 Steps to Boost IT Infrastructure Reliability

    5 Steps to Boost IT Infrastructure Reliability

    In today's fast-evolving tech landscape, …Download Whitepaper
  • Simplify Payroll Setup for Your Small Business

    Simplify Payroll Setup for Your Small Business

    In our free guide, "How …Download Whitepaper
  • Overcoming the Challenges of Cost & Complexity in the Cloud-first Era.

    Overcoming the Challenges of Cost & Complexity in the Cloud-first Era.

    Download Whitepaper

Middle Placement

Case Studies

  • Balancing brand heritage and modern service with AI-powered customer experience

    Balancing brand heritage and modern service with AI-powered customer experience

    Balancing brand heritage and modern …Read More
  • Overhauling IT boosts business sustainability, efficiency amid motorsport carbon pressures: McLaren

    Overhauling IT boosts business sustainability, efficiency amid motorsport carbon pressures: McLaren

    The firm’s global IT team …Read More
  • Nokia integrates all-flash data infrastructure into telco cloud for network modernization

    Nokia integrates all-flash data infrastructure into telco cloud for network modernization

    Its December 2025 upgrade supports …Read More
  • Overcoming workforce challenges in Japan’s healthcare sector with generative AI: JCHO Osaka Hospital

    Overcoming workforce challenges in Japan’s healthcare sector with generative AI: JCHO Osaka Hospital

    A digitalization initiative launching by …Read More

Bottom Sidebar

Other News

  • UnionPay Launches Agentic Payment Open Protocol Framework: Building an Open, Trusted Smart Payment Ecosystem

    April 4, 2026
    SHANGHAI, April 3, 2026 /PRNewswire/ …Read More »
  • 51Talk Marks 15 Years with Global Brand Refresh and Names Thai Actor, Shahkrit Yamnarm as Brand Ambassador in Thailand

    April 4, 2026
    SINGAPORE, April 3, 2026 /PRNewswire/ …Read More »
  • Ridgetech, Inc. Announces 1-for-150 Reverse Share Split

    April 4, 2026
    HANGZHOU, China, April 4, 2026 …Read More »
  • Arctech Flagship SkyLine II: New Features Unlock Complex Solar Project Potential

    April 3, 2026
    KUNSHAN, China, April 3, 2026 …Read More »
  • Viettel Marks 20 Years of Global Expansion, Overseas Revenue Up 25%

    April 3, 2026
    HANOI, Vietnam, April 3, 2026 …Read More »
  • Our Brands
  • CybersecAsia
  • MartechAsia
  • Home
  • About Us
  • Contact Us
  • Sitemap
  • Privacy & Cookies
  • Terms of Use
  • Advertising & Reprint Policy
  • Media Kit
  • Subscribe
  • Manage Subscriptions
  • Newsletter

Copyright © 2026 DigiconAsia All Rights Reserved.