Be Scared: AI Code Security Risks with Steve Yegge
Steve Yegge warns of escalating AI code security risks, including new threats like 'slop squatting,' and urges developers to prioritize security passes.

Visual TL;DR
rapid adoption of AI in code generation, accelerating development significantly
From the article 5 mentionsSteve Yegge, speaking at the AI Engineer World's Fair, delivered a stark warning to the audience: "Be scared." His presentation, titled "Agentic Security: Permissions, Provenance, and the agent supply chain," underscored the escalating security risks associated with the rapid adoption of AI in code generation.
shipping code 10x faster with same defect rate expands vulnerability surface 10x
AI models introduce new classes of threats like 'slop squatting' and hallucinations
From the article 4 mentionsThis issue is exacerbated by the fact that AI models, when writing code, are likely to introduce not just existing vulnerabilities like cross-site scripting, but entirely new classes of threats.
prioritizing security passes and agentic security for timely vulnerability identification
AI models likely to introduce existing vulnerabilities and entirely new threats
utilizing specialized tools for AI security to mitigate risks effectively
From the article 4 mentionsTo combat these emerging threats, Yegge proposed integrating specialized security tools into the AI workflow.
Steve Yegge warns developers to 'be scared' and prioritize security
From the article 2 mentionsYegge concluded with a call to action, urging the audience to "dial it in" and take these threats seriously.
Contents(6)
© 2026 StartupHub.ai. All rights reserved. You may not republish this article in full without a license. Search engines and AI research tools may crawl and summarize for reference. Bulk reproduction or model training requires a license. See our terms.
Written by
Daniel SingerEditor, StartupHub.ai
Daniel Singer is the editor of StartupHub.ai, a technology expert and thought leader on AI and its applications across sectors, from fintech and healthcare to developer tooling and consumer software. He writes and tests the tools covered here thoroughly and regularly, and built StartupHub.ai to give founders, operators and buyers a clearer read on what they are actually being sold.