The manual check that saved them won't scale
Softjourn, a software consultancy, avoided installing a malicious package last month only because an engineer manually checked an AI coding agent's recommendation and found the package had almost no d…
Softjourn, a software consultancy, avoided installing a malicious package last month only because an engineer manually checked an AI coding agent's recommendation and found the package had almost no d…
An engineer at Softjourn nearly installed a malicious package recommended by an AI agent, but company policy requiring verification on GitHub prevented the installation. Separately, security researche…
A 2026 Software Lifecycle Engineering Decision Maker Survey from Futurum Research found that 76.6% of organizations are actively using AI in their development workflows, with another 20.4% evaluating …
Softjourn, a consulting and software development company, narrowly avoided a supply chain attack when an engineer almost installed a malware package recommended by an AI agent. The company's policy of…