Slopsquatting: AI's Contribution to Supply Chain Attacks
hackerone.com | incident | #ai-security | #supply-chain | #open-source | #llm | #vibe-coding | #supply-chain-security | #software-supply-chain | #slopsquatting | #ai-generated-code
Summary
AI-generated code often imports packages that don't exist. In slopsquatting attacks, adversaries register these hallucinated names with malware, turning vibe coding into a supply chain risk.
- Published
- Collected
Skip to content