home.social

#slopsquatting — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #slopsquatting, aggregated by home.social.

fetched live
  1. Галлюцинация нейросети в коде обычно ломает сборку. С выдуманным пакетом иначе: его имя может занять вредонос

    Я взял 139 имён пакетов, которые пять свежих ИИ-моделей выдумывают одинаково, и 22 сентября проверил каждое по живым PyPI и npm. Это реестры, откуда ставятся библиотеки для Python и JavaScript. Список ценен тем, что не привязан к одной нейросети: раз имя выдумывают все пять, под ударом пользователи любой из них. Список раскрыли 30 апреля 2026 года. Занято 7 имён из 139. Под одним из них, metro-evaluator , в декабре 2025 года лежал вредоносный код: npm снял его через пять дней и поставил заглушку. Это было ещё до раскрытия списка, и совпадение это или расчёт на выдуманное имя, по реестру не видно. Остальные шесть имён заняли четыре чужих настоящих проекта, владелец бренда своей заглушкой и пустой пакет в 53 байта, который появился уже после раскрытия. По совету нейросети pip install odf поставит чей-то другой инструмент вместо нужной библиотеки.

    habr.com/ru/articles/1087738/

    #сезон_Код_будущего #галлюцинация_нейросети #ии_для_программирования #нейросеть_для_программирования #slopsquatting #PyPI #npm #цепочка_поставок #безопасность_зависимостей #ИИагенты

  2. Галлюцинация нейросети в коде обычно ломает сборку. С выдуманным пакетом иначе: его имя может занять вредонос

    Я взял 139 имён пакетов, которые пять свежих ИИ-моделей выдумывают одинаково, и 22 сентября проверил каждое по живым PyPI и npm. Это реестры, откуда ставятся библиотеки для Python и JavaScript. Список ценен тем, что не привязан к одной нейросети: раз имя выдумывают все пять, под ударом пользователи любой из них. Список раскрыли 30 апреля 2026 года. Занято 7 имён из 139. Под одним из них, metro-evaluator , в декабре 2025 года лежал вредоносный код: npm снял его через пять дней и поставил заглушку. Это было ещё до раскрытия списка, и совпадение это или расчёт на выдуманное имя, по реестру не видно. Остальные шесть имён заняли четыре чужих настоящих проекта, владелец бренда своей заглушкой и пустой пакет в 53 байта, который появился уже после раскрытия. По совету нейросети pip install odf поставит чей-то другой инструмент вместо нужной библиотеки.

    habr.com/ru/articles/1087738/

    #сезон_Код_будущего #галлюцинация_нейросети #ии_для_программирования #нейросеть_для_программирования #slopsquatting #PyPI #npm #цепочка_поставок #безопасность_зависимостей #ИИагенты

  3. Today's vocabulary lesson:

    #Typosquatting (Human): Attacker registers a name that looks like a real package.

    #Slopsquatting (Human): Attacker registers a name an AI invented, waits for AI agents to suggest installing it.

    #Hallucination (AI): Enables slopsquatting by confidently naming packages that don't exist.

    Stats for #vulnerabilities are staggering. #AStoryForAnotherTime

    #Humans #vibecoding with only #AI (not earned knowledge) to #signoff as #productionready should fucking #terrify you.

  4. Today's vocabulary lesson:

    #Typosquatting (Human): Attacker registers a name that looks like a real package.

    #Slopsquatting (Human): Attacker registers a name an AI invented, waits for AI agents to suggest installing it.

    #Hallucination (AI): Enables slopsquatting by confidently naming packages that don't exist.

    Stats for #vulnerabilities are staggering. #AStoryForAnotherTime

    #Humans #vibecoding with only #AI (not earned knowledge) to #signoff as #productionready should fucking #terrify you.

  5. [Перевод] Почему Java-разработчики слишком доверяют рекомендациям ИИ

    Представьте: в пятницу вечером руководитель уверенно сообщает, что переход со Spring Boot 3.5 на 4.0 будет простым и его можно закончить за выходные. Скорее всего, вы уточните, на чём основана такая оценка, и напомните о несовместимых изменениях. Теперь заменим руководителя на GitHub Copilot или другую большую языковую модель (LLM). Она предлагает рефакторинг метода, новую зависимость или готовый шаблон реализации. Ответ выглядит аккуратно и звучит уверенно. Модель не предупреждает, что может ошибаться. Возникает вопрос: проверяем ли мы такой код столь же строго, как заявление руководителя, или сразу принимаем его? По данным отчёта Sonatype за 2026 год , 27,76% из 36 870 сгенерированных LLM рекомендаций по обновлению зависимостей ссылались на несуществующие версии этих зависимостей. Получается, одна из трёх-четырёх зависимостей — выдуманная. И проблема не ограничивается зависимостями: та же ложная уверенность может присутствовать в любой строке кода, созданной ИИ.

    habr.com/ru/companies/axiomjdk

    #Java #ИИ #LLM #Maven #GitHub_Copilot #Spring_Boot #CVE #SCA #slopsquatting

  6. [Перевод] Почему Java-разработчики слишком доверяют рекомендациям ИИ

    Представьте: в пятницу вечером руководитель уверенно сообщает, что переход со Spring Boot 3.5 на 4.0 будет простым и его можно закончить за выходные. Скорее всего, вы уточните, на чём основана такая оценка, и напомните о несовместимых изменениях. Теперь заменим руководителя на GitHub Copilot или другую большую языковую модель (LLM). Она предлагает рефакторинг метода, новую зависимость или готовый шаблон реализации. Ответ выглядит аккуратно и звучит уверенно. Модель не предупреждает, что может ошибаться. Возникает вопрос: проверяем ли мы такой код столь же строго, как заявление руководителя, или сразу принимаем его? По данным отчёта Sonatype за 2026 год , 27,76% из 36 870 сгенерированных LLM рекомендаций по обновлению зависимостей ссылались на несуществующие версии этих зависимостей. Получается, одна из трёх-четырёх зависимостей — выдуманная. И проблема не ограничивается зависимостями: та же ложная уверенность может присутствовать в любой строке кода, созданной ИИ.

    habr.com/ru/companies/axiomjdk

    #Java #ИИ #LLM #Maven #GitHub_Copilot #Spring_Boot #CVE #SCA #slopsquatting

  7. Top AIs invent same fake #PyPl and #npm package names. Research reveals that #slopsquatting remains a threat to developers using #AI to aid coding (#vibecoding):

    👇
    infoworld.com/article/4200884/

  8. Top AIs invent same fake #PyPl and #npm package names. Research reveals that #slopsquatting remains a threat to developers using #AI to aid coding (#vibecoding):

    👇
    infoworld.com/article/4200884/

  9. Top AIs invent same fake #PyPl and #npm package names. Research reveals that #slopsquatting remains a threat to developers using #AI to aid coding (#vibecoding):

    👇
    infoworld.com/article/4200884/

  10. Top AIs invent same fake #PyPl and #npm package names. Research reveals that #slopsquatting remains a threat to developers using #AI to aid coding (#vibecoding):

    👇
    infoworld.com/article/4200884/

  11. VentureBeat: Forget typosquatting; slopsquatting is the software supply chain threat created by AI coding tools. “Slopsquatting is a new type of supply chain attack that uses large language model (LLM) hallucinations to inject malicious code into development workflows. The term combines ‘AI slop’ and ‘typosquatting,’ a deceptive practice where attackers register misspelled or lookalike versions […]

    https://rbfirehose.com/2026/07/18/venturebeat-forget-typosquatting-slopsquatting-is-the-software-supply-chain-threat-created-by-ai-coding-tools/
  12. VentureBeat: Forget typosquatting; slopsquatting is the software supply chain threat created by AI coding tools. “Slopsquatting is a new type of supply chain attack that uses large language model (LLM) hallucinations to inject malicious code into development workflows. The term combines ‘AI slop’ and ‘typosquatting,’ a deceptive practice where attackers register misspelled or lookalike versions […]

    https://rbfirehose.com/2026/07/18/venturebeat-forget-typosquatting-slopsquatting-is-the-software-supply-chain-threat-created-by-ai-coding-tools/
  13. VentureBeat: Forget typosquatting; slopsquatting is the software supply chain threat created by AI coding tools. “Slopsquatting is a new type of supply chain attack that uses large language model (LLM) hallucinations to inject malicious code into development workflows. The term combines ‘AI slop’ and ‘typosquatting,’ a deceptive practice where attackers register misspelled or lookalike versions […]

    https://rbfirehose.com/2026/07/18/venturebeat-forget-typosquatting-slopsquatting-is-the-software-supply-chain-threat-created-by-ai-coding-tools/
  14. VentureBeat: Forget typosquatting; slopsquatting is the software supply chain threat created by AI coding tools. “Slopsquatting is a new type of supply chain attack that uses large language model (LLM) hallucinations to inject malicious code into development workflows. The term combines ‘AI slop’ and ‘typosquatting,’ a deceptive practice where attackers register misspelled or lookalike versions […]

    https://rbfirehose.com/2026/07/18/venturebeat-forget-typosquatting-slopsquatting-is-the-software-supply-chain-threat-created-by-ai-coding-tools/
  15. Vibe-coding и зависимости: как не дать Claude и Cursor затащить дырявый пакет

    На прошлой неделе я попросил Claude Code добавить рендеринг markdown в проект. Через секунду в зависимостях появился flutter_markdown — нормальный пакет от flutter.dev, паблишер проверенный. Я нажал accept. А потом случайно открыл его карточку, а там прямо в шапке: «This project has been discontinued, and will not receive further updates.» Пакет уже больше года как мёртв. Другой пример: Cursor добавляет minio/minio:latest в docker-compose для S3-совместимого хранилища. Только репозиторий архивирован 25 апреля 2026 года, и MinIO Inc. толкает всех в коммерческий AIStor. В статье разбираю: — что такое slopsquatting и почему эта атака работает только из-за ИИ-агентов; — что показала USENIX Security 2025 на 576 000 примерах кода (спойлер: 19,7% рекомендованных LLM пакетов вообще не существуют); — что реально творилось с npm и PyPI в 2024–2025 — от ultralytics до Shai-Hulud-червя и атаки на chalk с 2 млрд weekly downloads; — готовый skill для Claude Code, который заставит агента проверять пакет до установки.

    habr.com/ru/articles/1051000/

    #slopsquatting #supply_chain #Claude_Code #Cursor #vibe_coding #npm #pypi #безопасность_зависимостей

  16. Vibe-coding и зависимости: как не дать Claude и Cursor затащить дырявый пакет

    На прошлой неделе я попросил Claude Code добавить рендеринг markdown в проект. Через секунду в зависимостях появился flutter_markdown — нормальный пакет от flutter.dev, паблишер проверенный. Я нажал accept. А потом случайно открыл его карточку, а там прямо в шапке: «This project has been discontinued, and will not receive further updates.» Пакет уже больше года как мёртв. Другой пример: Cursor добавляет minio/minio:latest в docker-compose для S3-совместимого хранилища. Только репозиторий архивирован 25 апреля 2026 года, и MinIO Inc. толкает всех в коммерческий AIStor. В статье разбираю: — что такое slopsquatting и почему эта атака работает только из-за ИИ-агентов; — что показала USENIX Security 2025 на 576 000 примерах кода (спойлер: 19,7% рекомендованных LLM пакетов вообще не существуют); — что реально творилось с npm и PyPI в 2024–2025 — от ultralytics до Shai-Hulud-червя и атаки на chalk с 2 млрд weekly downloads; — готовый skill для Claude Code, который заставит агента проверять пакет до установки.

    habr.com/ru/articles/1051000/

    #slopsquatting #supply_chain #Claude_Code #Cursor #vibe_coding #npm #pypi #безопасность_зависимостей

  17. AI-ассистент пишет код: 8 антипаттернов, из-за которых он падает в проде

    AI-ассистент пишет код быстрее — и ломает прод чаще. Звучит как парадокс, но цифры 2026 года это подтверждают: pull request'ов на разработчика стало на 20% больше, а инцидентов на каждый PR — на 23,5%. Самое неприятное, что эти баги почти не видны на ревью: код чистый, тесты зелёные, апрув за пять минут — а через неделю алерт. Разобираем восемь антипаттернов, которые ловят даже сеньоров: от галлюцинированных зависимостей и slopsquatting до context rot и архитектуры, которая по кускам деградирует в God Service. На каждый — симптом, причина, последствия и конкретное исправление. Плюс готовый чек-лист ревьюера AI-кода, который можно забрать и повесить рядом с шаблоном PR.

    habr.com/ru/companies/otus/art

    #AIассистент #антипаттерны #code_review #качество_кода #безопасность_цепочки_поставок #разработка_с_ai #slopsquatting

  18. AI-ассистент пишет код: 8 антипаттернов, из-за которых он падает в проде

    AI-ассистент пишет код быстрее — и ломает прод чаще. Звучит как парадокс, но цифры 2026 года это подтверждают: pull request'ов на разработчика стало на 20% больше, а инцидентов на каждый PR — на 23,5%. Самое неприятное, что эти баги почти не видны на ревью: код чистый, тесты зелёные, апрув за пять минут — а через неделю алерт. Разобираем восемь антипаттернов, которые ловят даже сеньоров: от галлюцинированных зависимостей и slopsquatting до context rot и архитектуры, которая по кускам деградирует в God Service. На каждый — симптом, причина, последствия и конкретное исправление. Плюс готовый чек-лист ревьюера AI-кода, который можно забрать и повесить рядом с шаблоном PR.

    habr.com/ru/companies/otus/art

    #AIассистент #антипаттерны #code_review #качество_кода #безопасность_цепочки_поставок #разработка_с_ai #slopsquatting

  19. #AI #code often includes references to non-existent dependencies. These references are commonly called “#hallucinations”. A new type of #attack has arisen that involves an attacker registering a package whose name is frequently hallucinated. When AI code containing this #hallucination is accepted, and this dependency is installed, the attacker can ship #malicious code into the project’s build, introducing a major #security vulnerability. This type of attack has become known as “#slopsquatting”.

  20. #AI #code often includes references to non-existent dependencies. These references are commonly called “#hallucinations”. A new type of #attack has arisen that involves an attacker registering a package whose name is frequently hallucinated. When AI code containing this #hallucination is accepted, and this dependency is installed, the attacker can ship #malicious code into the project’s build, introducing a major #security vulnerability. This type of attack has become known as “#slopsquatting”.

  21. #AI #code often includes references to non-existent dependencies. These references are commonly called “#hallucinations”. A new type of #attack has arisen that involves an attacker registering a package whose name is frequently hallucinated. When AI code containing this #hallucination is accepted, and this dependency is installed, the attacker can ship #malicious code into the project’s build, introducing a major #security vulnerability. This type of attack has become known as “#slopsquatting”.

  22. #AI #code often includes references to non-existent dependencies. These references are commonly called “#hallucinations”. A new type of #attack has arisen that involves an attacker registering a package whose name is frequently hallucinated. When AI code containing this #hallucination is accepted, and this dependency is installed, the attacker can ship #malicious code into the project’s build, introducing a major #security vulnerability. This type of attack has become known as “#slopsquatting”.

  23. Фантазии LLM воплощаются в реальности — фальшивые опенсорсные библиотеки

    LLM придумывает названия несуществующих библиотек и предлагает разработчикам-вайбкодерам пользоваться ими. Если есть спрос — возникнет и предложение. Вскоре эти библиотеки действительно появляются в реальности , но уже с вредоносным кодом.

    habr.com/ru/companies/globalsi

    #llm #галлюцинации #slopsquatting #генерация_кода #фальшивки

  24. Фантазии LLM воплощаются в реальности — фальшивые опенсорсные библиотеки

    LLM придумывает названия несуществующих библиотек и предлагает разработчикам-вайбкодерам пользоваться ими. Если есть спрос — возникнет и предложение. Вскоре эти библиотеки действительно появляются в реальности , но уже с вредоносным кодом.

    habr.com/ru/companies/globalsi

    #llm #галлюцинации #slopsquatting #генерация_кода #фальшивки

  25. **Check this out: techno feudalism, chatons, slopsquatting and more (9. 8. 2025)**

    (Self-sustainable organic farms (and self-hosted IT stuff) are a nice idea, but they are difficult to maintain in ‘island mode’. Are community owned shared data servers a solution?)

    (Examples of community data servers in France)

    (If you’re masochistic enough to join FOSS development and don’t know where to start, well, you can do it here. A list of open issues that are ‘easy’ solvable.)

    (If you’re using LLM for code generation and then you install a non-existing library (that is hosted by the attacker), well, it’s your own fault.)

    (You want to see what are your neighbours’ devices, like garage opener, up to? )

    (You never know when you need retro-style display fonts)

    (Windows 10 support is running out soon. Don’t buy a new computer, shoot yourself in the foot with a Linux! You will limp, but you’ll be free from mass-scale espionage.)

    (Forget AI detector tools, hoomanz are also able to detect AI slop. Actually, the signs of slop are pretty straight forward. AI sounds like you listened to a hyped ultra positive grifter salesman/politician)

    https://blog.rozman.info/check-this-out-techno-feudalism-chatons-slopsquatting-and-more-9-8-2025/

    #endof10 #fonts #FOSS #homeassistant #LLM #slopsquatting

  26. "#Slopsquatting is a type of #cybersquatting. It is the practice of registering a non-existent software package name that a large language model (#LLM) may hallucinate in its output, whereby someone unknowingly may copy-paste and install the #software package without realizing it is #fake."

    en.wikipedia.org/wiki/Slopsqua

  27. "#Slopsquatting is a type of #cybersquatting. It is the practice of registering a non-existent software package name that a large language model (#LLM) may hallucinate in its output, whereby someone unknowingly may copy-paste and install the #software package without realizing it is #fake."

    en.wikipedia.org/wiki/Slopsqua

  28. "#Slopsquatting is a type of #cybersquatting. It is the practice of registering a non-existent software package name that a large language model (#LLM) may hallucinate in its output, whereby someone unknowingly may copy-paste and install the #software package without realizing it is #fake."

    en.wikipedia.org/wiki/Slopsqua

  29. "#Slopsquatting is a type of #cybersquatting. It is the practice of registering a non-existent software package name that a large language model (#LLM) may hallucinate in its output, whereby someone unknowingly may copy-paste and install the #software package without realizing it is #fake."

    en.wikipedia.org/wiki/Slopsqua

  30. Ok, ich lass mich mal zu einer #Prophezeiung hinreißen.

    #Slopsquatting ist ja ein alter Hut.

    Aber was haltet ihr von #Slopswatting? Also das gezielte Platzieren von Falschinfos im Internet, sodass AI-aided Policing-Systeme kunkludieren, dass eine bestimmte Person ein ganz gefährlicher Gefährder ist, den man mal hochnehmen sollte?

  31. Ok, ich lass mich mal zu einer #Prophezeiung hinreißen.

    #Slopsquatting ist ja ein alter Hut.

    Aber was haltet ihr von #Slopswatting? Also das gezielte Platzieren von Falschinfos im Internet, sodass AI-aided Policing-Systeme kunkludieren, dass eine bestimmte Person ein ganz gefährlicher Gefährder ist, den man mal hochnehmen sollte?

  32. #LLM can't stop making up software dependencies and sabotaging everything
    Hallucinated package names fuel '#slopsquatting'
    As #AI #coding assistants invent nonexistent software libraries to download and use, enterprising attackers create and upload libraries with those names—laced with #malware, of course.
    theregister.com/2025/04/12/ai_

  33. can't stop making up software dependencies and sabotaging everything
    Hallucinated package names fuel '#slopsquatting'
    As assistants invent nonexistent software libraries to download and use, enterprising attackers create and upload libraries with those names—laced with , of course.
    theregister.com/2025/04/12/ai_

  34. #LLM can't stop making up software dependencies and sabotaging everything
    Hallucinated package names fuel '#slopsquatting'
    As #AI #coding assistants invent nonexistent software libraries to download and use, enterprising attackers create and upload libraries with those names—laced with #malware, of course.
    theregister.com/2025/04/12/ai_

  35. #LLM can't stop making up software dependencies and sabotaging everything
    Hallucinated package names fuel '#slopsquatting'
    As #AI #coding assistants invent nonexistent software libraries to download and use, enterprising attackers create and upload libraries with those names—laced with #malware, of course.
    theregister.com/2025/04/12/ai_

  36. 📢 AI coding tools are creating silent vulnerabilities through "slopsquatting"—where attackers register package names hallucinated by AI.
    This attack vector “exploits vibecoding" (using AI without review) and specifically targets less technical developers. 

    #AISecurityRisks #Slopsquatting #VibeCoding #SecureCoding #CyberSecurity

    lotharschulz.info/2025/05/12/t

  37. 📢 AI coding tools are creating silent vulnerabilities through "slopsquatting"—where attackers register package names hallucinated by AI.
    This attack vector “exploits vibecoding" (using AI without review) and specifically targets less technical developers. 

    lotharschulz.info/2025/05/12/t

  38. 📢 AI coding tools are creating silent vulnerabilities through "slopsquatting"—where attackers register package names hallucinated by AI.
    This attack vector “exploits vibecoding" (using AI without review) and specifically targets less technical developers. 

    #AISecurityRisks #Slopsquatting #VibeCoding #SecureCoding #CyberSecurity

    lotharschulz.info/2025/05/12/t

  39. 📢 AI coding tools are creating silent vulnerabilities through "slopsquatting"—where attackers register package names hallucinated by AI.
    This attack vector “exploits vibecoding" (using AI without review) and specifically targets less technical developers. 

    #AISecurityRisks #Slopsquatting #VibeCoding #SecureCoding #CyberSecurity

    lotharschulz.info/2025/05/12/t

  40. Curious about the buzzwords shaping the future of AI?

    From vibe coding to ‘slopsquatting’, we're breaking down what these mean and their impact on tech and cybersecurity. Check out the latest @sharedsecurity episode for insights!

    Watch on YouTube:
    youtu.be/vi7a9ciHPjg

    Listen and subscribe to the podcast!
    sharedsecurity.net/subscribe

    sharedsecurity.net/2025/05/05/

    #cybersecurity #ai #podcast #vibecoding #slopsquatting #mcp

  41. Curious about the buzzwords shaping the future of AI?

    From vibe coding to ‘slopsquatting’, we're breaking down what these mean and their impact on tech and cybersecurity. Check out the latest @sharedsecurity episode for insights!

    Watch on YouTube:
    youtu.be/vi7a9ciHPjg

    Listen and subscribe to the podcast!
    sharedsecurity.net/subscribe

    sharedsecurity.net/2025/05/05/

    #cybersecurity #ai #podcast #vibecoding #slopsquatting #mcp

  42. Curious about the buzzwords shaping the future of AI?

    From vibe coding to ‘slopsquatting’, we're breaking down what these mean and their impact on tech and cybersecurity. Check out the latest @sharedsecurity episode for insights!

    Watch on YouTube:
    youtu.be/vi7a9ciHPjg

    Listen and subscribe to the podcast!
    sharedsecurity.net/subscribe

    sharedsecurity.net/2025/05/05/

    #cybersecurity #ai #podcast #vibecoding #slopsquatting #mcp

  43. Curious about the buzzwords shaping the future of AI?

    From vibe coding to ‘slopsquatting’, we're breaking down what these mean and their impact on tech and cybersecurity. Check out the latest @sharedsecurity episode for insights!

    Watch on YouTube:
    youtu.be/vi7a9ciHPjg

    Listen and subscribe to the podcast!
    sharedsecurity.net/subscribe

    sharedsecurity.net/2025/05/05/

    #cybersecurity #ai #podcast #vibecoding #slopsquatting #mcp

  44. Researchers have uncovered a new supply chain attack called #Slopsquatting where threat actors exploit hallucinated, non-existent package names generated by #AI coding tools like #GPT4 and #CodeLlama

    These believable yet fake packages (amounting to 19.7% or 205,000 packages), recommended in test samples were found to be fakes., can be registered by attackers to distribute malicious code.

    Open-source models -- like #DeepSeek and #WizardCoder -- hallucinated more frequently, at 21.7% on average, compared to the commercial ones (5.2%) like GPT 4.

    We Have a Package for You! A Comprehensive Analysis of Package Hallucinations
    by Code Generating LLMs (PDF) arxiv.org/pdf/2406.10279

  45. Researchers have uncovered a new supply chain attack called #Slopsquatting where threat actors exploit hallucinated, non-existent package names generated by #AI coding tools like #GPT4 and #CodeLlama

    These believable yet fake packages (amounting to 19.7% or 205,000 packages), recommended in test samples were found to be fakes., can be registered by attackers to distribute malicious code.

    Open-source models -- like #DeepSeek and #WizardCoder -- hallucinated more frequently, at 21.7% on average, compared to the commercial ones (5.2%) like GPT 4.

    We Have a Package for You! A Comprehensive Analysis of Package Hallucinations
    by Code Generating LLMs (PDF) arxiv.org/pdf/2406.10279

  46. Researchers have uncovered a new supply chain attack called #Slopsquatting where threat actors exploit hallucinated, non-existent package names generated by #AI coding tools like #GPT4 and #CodeLlama

    These believable yet fake packages (amounting to 19.7% or 205,000 packages), recommended in test samples were found to be fakes., can be registered by attackers to distribute malicious code.

    Open-source models -- like #DeepSeek and #WizardCoder -- hallucinated more frequently, at 21.7% on average, compared to the commercial ones (5.2%) like GPT 4.

    We Have a Package for You! A Comprehensive Analysis of Package Hallucinations
    by Code Generating LLMs (PDF) arxiv.org/pdf/2406.10279

  47. Researchers have uncovered a new supply chain attack called #Slopsquatting where threat actors exploit hallucinated, non-existent package names generated by #AI coding tools like #GPT4 and #CodeLlama

    These believable yet fake packages (amounting to 19.7% or 205,000 packages), recommended in test samples were found to be fakes., can be registered by attackers to distribute malicious code.

    Open-source models -- like #DeepSeek and #WizardCoder -- hallucinated more frequently, at 21.7% on average, compared to the commercial ones (5.2%) like GPT 4.

    We Have a Package for You! A Comprehensive Analysis of Package Hallucinations
    by Code Generating LLMs (PDF) arxiv.org/pdf/2406.10279

  48. [Перевод] Когда ИИ становится троянским конем: 43% «галлюцинированных» имен пакетов регулярно повторяются в сгенерированном коде

    AI-помощники регулярно "галлюцинируют" несуществующие пакеты, а злоумышленники используют эти имена для размещения вредоносного кода в репозиториях. Исследования показывают, что 5.2% рекомендаций пакетов от коммерческих моделей не существуют, а для open-source моделей этот показатель достигает 21.7%. Эта техника, названная "слопсквоттингом" (slopsquatting), особенно опасна в эпоху "vibe coding", когда разработчики безоговорочно доверяют рекомендациям AI.

    habr.com/ru/articles/901198/

    #искусственный_интеллект #кибербезопасность #slopsquatting #разработка #галлюцинации_ии #npm #pypi #vibecoding

  49. [Перевод] Когда ИИ становится троянским конем: 43% «галлюцинированных» имен пакетов регулярно повторяются в сгенерированном коде

    AI-помощники регулярно "галлюцинируют" несуществующие пакеты, а злоумышленники используют эти имена для размещения вредоносного кода в репозиториях. Исследования показывают, что 5.2% рекомендаций пакетов от коммерческих моделей не существуют, а для open-source моделей этот показатель достигает 21.7%. Эта техника, названная "слопсквоттингом" (slopsquatting), особенно опасна в эпоху "vibe coding", когда разработчики безоговорочно доверяют рекомендациям AI.

    habr.com/ru/articles/901198/

    #искусственный_интеллект #кибербезопасность #slopsquatting #разработка #галлюцинации_ии #npm #pypi #vibecoding

  50. “Users of LLM generated code, packages, and information should be double-checking LLM outputs against reality before putting any of that information into operation, otherwise there can be real-world consequences.”

    theregister.com/2025/04/12/ai_
    h/t @macmanx #slopsquatting #TheMoreYouKnow

  51. “Users of LLM generated code, packages, and information should be double-checking LLM outputs against reality before putting any of that information into operation, otherwise there can be real-world consequences.”

    theregister.com/2025/04/12/ai_
    h/t @macmanx #slopsquatting #TheMoreYouKnow

  52. “Users of LLM generated code, packages, and information should be double-checking LLM outputs against reality before putting any of that information into operation, otherwise there can be real-world consequences.”

    theregister.com/2025/04/12/ai_
    h/t @macmanx #slopsquatting #TheMoreYouKnow

  53. “Users of LLM generated code, packages, and information should be double-checking LLM outputs against reality before putting any of that information into operation, otherwise there can be real-world consequences.”

    theregister.com/2025/04/12/ai_
    h/t @macmanx #slopsquatting #TheMoreYouKnow