Comment on Fed up with vibe coders, dev sneaks data-nuking prompt injection into their code

<- View Parent
derek@infosec.pub ⁨3⁩ ⁨weeks⁩ ago

I call bullshit on this “don’t have the time” shtick. If one doesn’t have time to review code prior to hacking on it then they ought to rearrange their priorities.

Offloading this basic and essential responsibility to any tool is an explicit abdication of claims to grievance over the result of such negligence.

So much more so when offloading that responsibility to LLM “agents”. If you find yourself disagreeing with this then you need to educate yourself about those tools.

I recommend this Internet of Bugs video: Don’t Use Any AI Agents or Browsers Until You Watch This www.youtube.com/watch?v=TdHg9ee56Iw

and the deeper dive on their second channel: Technical Breakdown: How AI Agents Ignore 40 Years of Security Progress www.youtube.com/watch?v=_3okhTwa7w4

This isn’t some anti-AI doomer crap. This is understanding computer science and continuing to think critically about its evolution.

original
Sort:hotnewtop