cd/entity/Ji-ho Choi· home entities Ji-ho Choi
grep -l @ji-ho choi /news/*.json | wc -l → 6

Ji-ho Choi

mentions 6 type Person feed RSS

// recent coverage 6 mentions

13:08
2026-08-17
sourcefeed.dev
ai-safety

Your LLM Writes GitHub Actions Like It's 2022

A 2026 arXiv audit of real-world Java workflows found only 4% compliance with least-privilege permission controls, and model-generated GitHub Actions workflows often inherit over-permissive habits fro…

00:09
2026-08-10
sourcefeed.dev
ai-safety

Claude Code's Permission Prompt Isn't a Security Boundary

Claude Code version 2.1.223, released August 6, patches four permission bypasses, but the fixes continue to address a fundamental flaw: the permission system uses text matching to parse shell commands…

07:08
2026-08-09
sourcefeed.dev
ai-infrastructure

Stop Running LLM-Generated Code in Your Own Process

Vercel Sandbox now defaults to persistent microVM sandboxes, a shift from the ephemeral model, signaling that stateful isolation is the new standard for running LLM-generated code. The service, which …

00:08
2026-07-26
sourcefeed.dev
ai-safety

Cursor's CORS Fix Is a Critical Vulnerability

Cursor, Bolt, Lovable, and GitHub Copilot AI coding assistants frequently generate CORS middleware that reflects the incoming Origin header with credentials enabled, creating a critical vulnerability …

08:02
2026-07-10
sourcefeed.dev
artificial-intelligence

Why You Need a Vulnerability Harness, Not a Security Agent

Security researcher Ji-ho Choi argues that using a single LLM session to find security bugs is inefficient and error-prone, advocating instead for a stateful, multi-stage "vulnerability harness" that …

// co-occurs with top 8 entities
// topics top 6 topics