Enterprises know AI-generated code is weak; they’re transport it anyway


The survey of hundreds of security leaders exposes an underlying naivete about AI-built code and its vulnerabilities, whilst instruments like Anthropic’s Mythos are uncovering safety flaws orders of magnitude quicker than any human safety staff might ever hope to.

“Mythos-class fashions collapse the window between a vulnerability present and a working exploit being out there from months to minutes,” the report notes. Enterprises counting on conventional safety instruments and strategies, it says, “can not survive this actuality.”

Safety as an afterthought

Checkmarx’s survey of two,350 CISOs, AppSec managers, and builders throughout 14 nations targeted on how a lot AI-developed code enterprises are deploying, the vulnerabilities it introduces, the way it impacts developer workflows, and total sentiment about AI code and safety posture.

At the moment, practically half of manufacturing code is AI-generated, and the vast majority of enterprises additionally report that a minimum of half their codebase is made up of open-source elements, based on the report.