Who Needs Your Security?!
-
40 min
Many see security requirements as a burden — extra time, reduced user experience, and additional strain on resources.
With the advent of AI, where code generation by neural networks has become everyday practice, these already difficult challenges have only grown worse.
It is particularly concerning when hypothetical attack scenarios begin to sound like user requirements: “As an attacker, I can gain unauthorised access to data through API vulnerabilities.”
According to Gartner (2024), more than half of companies have already faced, or will soon face, security incidents linked to AI-generated code. GitHub Copilot Research (2023) highlights the same issue: 40% of generated code contained vulnerabilities.
This talk reflects on how analysts can influence this situation from their side.