Secure Development
Figma Reviews Every Pull Request With AI for 50 Cents
Figma and Google Cloud both published how they use AI agents to secure their own code this year. The machinery is cheap and the method is documented. What neither company can sell you is the written threat model that makes it work.
10 Security Mistakes Hiding in Every Vibe-Coded App (Check Yours in 10 Minutes)
AI writes working code fast. It also makes the same security mistakes again and again. Here are the 10 most common ones, why they happen, and a quick way to check each one in your own app.
Your AI Has a Favourite Programming Language. Here Is What It Costs You
When you vibe-code, the AI picks the language, not you. The data shows it picks TypeScript for the frontend and Python for the backend. Each comes with its own security bill. Here is what ships in the box, and why Go deserves a look now.
Vibe Coding Is Shipping Vulnerabilities: What the Research Shows
AI coding tools are helping teams ship faster. They are also introducing a predictable set of security failures. Here is what the evidence shows and what you can do about it.
Application Security Patterns: Building Blocks for Safer Software
Why AppSec patterns matter, examples of common ones, and how to structure a reusable pattern.