Close Menu
    Trending
    • Idris Elba Reaffirms He’s Not The Next James Bond
    • Beijing says ‘firmly opposed’ to US blacklist of Chinese companies
    • Spain cruise past Peru in final World Cup 2026 warm-up match | World Cup 2026
    • Storylines for the RBC Canadian Open: Will a Canadian win on home soil?
    • The end of the ‘good enough’ worker
    • Can Apple and Google stop children from sharing explicit images?
    • Amsterdam Bans Meat Ads As The War On Food Expands
    • Katie Holmes And Joshua Jackson Spark ‘Soul-Level’ Love Chatter
    Benjamin Franklin Institute
    Tuesday, June 9
    • Home
    • Politics
    • Business
    • Science
    • Technology
    • Arts & Entertainment
    • International
    Benjamin Franklin Institute
    Home»Business»The hidden risks of vibe coding: 4 steps to protect your organization
    Business

    The hidden risks of vibe coding: 4 steps to protect your organization

    Team_Benjamin Franklin InstituteBy Team_Benjamin Franklin InstituteApril 18, 2026No Comments5 Mins Read
    Share Facebook Twitter Pinterest Copy Link LinkedIn Tumblr Email VKontakte Telegram
    Share
    Facebook Twitter Pinterest Email Copy Link

    You’ve likely heard of vibe coding and very well may have conducted an experiment or two yourself, enlisting Claude or some other AI tool to create a simple website or an interactive game.  OpenAI cofounder Andrej Karpathy coined the phrase with a tweet in February 2025.  In its simplest terms, vibe coding involves telling an AI program what you want to accomplish and having the AI create the code.  It uses natural language provided by the user to generate the software. 

    Vibe coding is a truly revolutionary democratizer of software development. It allows anyone with a computer and a little imagination to come up with software that appears, at least on the surface, to do whatever you ask it to. 

    And therein lies the rub.  Anyone in a company can potentially insert software inside the cybersecurity perimeter of a company without the burden of any knowledge of how software works and what it may be designed to do beyond your clever prompt.

    If the code an employee conjures just happens to be algorithmically derived from vetted, publicly available sources, you are in luck. But the fundamental danger with AI-generated code is precisely that you have no idea where it came from, what the sources were or how they were assembled. Was the source a PhD student at a top university, a basement-dwelling hacker, a state-sponsored cyber terrorist?  All of the above? 

    The AI program you are using doesn’t know or care—it’s loyally fulfilling its blindingly fast and blindingly oblivious pattern matching mission. 

    Opening the door to disaster

    That amazing program you just created without ever having learned to write a line of code may contain world-class level spyware, viruses, or malware that can extract (i.e., exfiltrate) a company’s proprietary data or so-called SQL injections that can wreak havoc on your databases.  The beautiful part from the bad actor’s point of view is they don’t need a back door: The blissfully ignorant employee importing the mystery code just swung the front doors wide open.

    But wait, there’s more.

    The vibe code your employee magically generated with his new AI colleague could also violate copyright or patent law. How would you assess the probability of a typical nontechnical employee discovering that? Those odds are likely to be a number approaching zero.  AI-generated IP liability could radically reshape your company’s litigation profile. 

    When you generate code through an LLM, like any code that humans develop, it will have bugs. But unlike human-generated code, there is nobody on staff who fully understands how it was put together.  That includes whether or not it is structurally sound, whether it is coherent, or where the vulnerabilities may be. Addressing this problem does not currently seem to be a major priority in the damn the torpedoes, full speed ahead mindset of the current AI-obsessed moment.              

    So what can organizational leaders do to manage this risk and mitigate potential catastrophe? Understanding the danger is the first step.  Consider taking the following steps.

    It’s a C-level problem, so treat it as such

    AI security is not primarily an IT problem: It’s a company-wide strategic problem for senior management. Given interactions with AI across finance, HR, legal, sales and marketing, design, engineering, the technical aspects of AI interaction is just the entry point. AI security needs to be treated as an enterprise issue. It cannot simply be delegated to IT as is standard procedure with cybersecurity. 

    Build security into your process

    Don’t wait to react after the fact. When it comes to AI risk, the old approach of creating a policy and having employees acknowledge it is not sufficient. Risk monitoring and remediation need to be part of the technical processes themselves, not separate static policies that you hope are being followed while collecting digital dust in some virtual folder somewhere.  There are new software programs that are designed to flag, assess, quantify and address these types of risks before they become crises.  Consider adopting them sooner rather than later to make sure your security is keeping apace of AI deployment.

    Demand accountability from providers

    Require your providers to expressly describe how AI is incorporated into their applications, what the risks are, how they can be assessed and addressed in real time (seconds or minutes, not quarters) as they occur in the application itself. This is rapidly becoming a new requirement well beyond the standard check-the-box security questionnaire. 

    Consult the experts

    There is a new industry arising that aims to address the gap between the explosion of AI use in organizations at all levels and the lack of response protocols for the largely unidentified risks created at that same breakneck pace. It is worth seeking guidance from the experts.

    The ability for AI to allow non-technical employees to create code is truly revolutionary.  But as history teaches, revolutions can go a few different ways. It is critical to be aware of and address the new risks that are inherent in these new capabilities. Vibes can only get you so far.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Telegram Copy Link

    Related Posts

    Business

    The end of the ‘good enough’ worker

    June 9, 2026
    Business

    How housing market inventory is shifting across every state

    June 9, 2026
    Business

    Why Repair Cafés are becoming more popular amid the anti-consumerism movement

    June 9, 2026
    Business

    A trip to the center of Knicks merch mania

    June 8, 2026
    Business

    What kinds of knowledge will save you from AI?

    June 8, 2026
    Business

    When competence becomes a liability

    June 8, 2026
    Editors Picks

    The BCI User Experience: Living With Brain Implants

    April 14, 2026

    Claire Foy Reveals Health Reason For Cutting Off Caffeine

    February 5, 2026

    Kenya Moore’s Hair Salon Ordered To Pay Nearly $100K In Fees

    February 25, 2026

    NBA issues suspensions for Wizards-Thunder fight

    March 22, 2026

    Historic Artemis II launch sends astronauts bound for the moon

    April 2, 2026
    About Us
    About Us

    Welcome to Benjamin Franklin Institute, your premier destination for insightful, engaging, and diverse Political News and Opinions.

    The Benjamin Franklin Institute supports free speech, the U.S. Constitution and political candidates and organizations that promote and protect both of these important features of the American Experiment.

    We are passionate about delivering high-quality, accurate, and engaging content that resonates with our readers. Sign up for our text alerts and email newsletter to stay informed.

    Latest Posts

    Idris Elba Reaffirms He’s Not The Next James Bond

    June 9, 2026

    Beijing says ‘firmly opposed’ to US blacklist of Chinese companies

    June 9, 2026

    Spain cruise past Peru in final World Cup 2026 warm-up match | World Cup 2026

    June 9, 2026

    Subscribe for Updates

    Stay informed by signing up for our free news alerts.

    Paid for by the Benjamin Franklin Institute. Not authorized by any candidate or candidate’s committee.
    • Privacy Policy
    • About us
    • Contact us

    Type above and press Enter to search. Press Esc to cancel.