Tag: security
All the articles with the tag "security".
-
AI SDLC Governance: Three Layers for Engineering Leaders
• UpdatedA three-layer governance stack (comprehension, review gate, and observability) gives engineering leaders measurable control over AI-generated code volume.
-
AI Supply Chain Attacks: New Vectors in Dependencies
• UpdatedSlopsquatting: attackers register packages AI hallucinates. XZ Utils showed the stakes. A framework to assess your AI supply chain exposure.
-
AI-Augmented CI/CD: Shift Left Security With Bounded Risk
• UpdatedAI code review in CI/CD with contained prompt injection. Defensive patterns: review-context profiles, managed review gates, capability isolation.