Learn AI, Data Science & Business — Earn Certificates That Get You Hired
Get 20% off all career paths from fullstack to AI
Overview
Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
Explore the security challenges introduced by AI-powered code assistance tools in this 26-minute conference talk from the Linux Foundation. Discover how AI code generation tools, while beneficial for development productivity, can inadvertently introduce vulnerabilities by suggesting insecure, misleading, or unverified dependencies due to incomplete or inaccurate context, creating new risks in the software supply chain. Examine real-world examples of AI-generated code leading to security issues and learn practical detection methods including analyzing code changes, generating AI Bills of Materials (AIBOMs), tracking unexpected dependencies, and monitoring builds for unusual behavior. Understand how to identify subtle risks such as dependency confusion by tracking package versions and changes over time. Gain insights into integrating these security checks into CI/CD pipelines without impacting development velocity, providing DevSecOps teams and developers with actionable strategies to maintain security in an AI-driven development environment.
Syllabus
Smarter Code, Sneakier Risks: Supply Chain Security in the Age of AI - Lavakush Biyani, Harness
Taught by
Linux Foundation