Most companies are using AI for security, not coding


According to JFrog’s latest annual Software Supply Chain State of the Union report, although many companies are employing artificial intelligence for security purposes, there’s a marked hesitance to adopt it for coding.
The report, which draws insights from more than 7,000 organizations globally, revealed that despite nine in 10 integrating AI/ML-powered tools in security scanning and remediation efforts, only one in three (32%) indicated that their organizations use AI/ML for coding.
This disparity highlights the cautious approach towards using AI in the development process, likely because many are concerned about potential vulnerabilities that AI-generated code could introduce to enterprise software.
Companies are worried about using AI for coding
JFrog CTO Yoav Landman commented: “DevSecOps teams worldwide are navigating a volatile field of software security, where innovation frequently meets demand in an age of rapid AI adoption.”
While security remains a core consideration, the study also revealed a divide regarding the optimal timing for security scans. Around 42% believe scanning during code writing is best, while 41% advocate for pre-deployment scans on new software packages when bringing them from an open-source software repository.
The report also revealed how security seems to be hindering productivity, with around two in five saying that approval to use a new package/library takes up to one week.
Furthermore, the report raises concerns about the misinterpretation of Critical Vulnerability Severity Scores (CVSS) – despite 60% of security and development teams dedicating around a quarter of their time to addressing vulnerabilities, as many as three-quarters (74%) of high or critical CVSS scores were found to be inappropriate in common scenarios.
Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!
Shachar Menashe, Senior Director of JFrog Security Research, summarizes: “Knowing where to put those tools, use their team’s time, and streamline processes is critical to keeping their SDLC secure.”
In an era increasingly characterized by cyber threats, informed decision-making, and strategic resource allocation are more important than ever. Fortunately, the report also reveals a positive outlook – while threats are increasing, severity may not be (or at least to the same degree).
More from TechRadar Pro
According to JFrog’s latest annual Software Supply Chain State of the Union report, although many companies are employing artificial intelligence for security purposes, there’s a marked hesitance to adopt it for coding. The report, which draws insights from more than 7,000 organizations globally, revealed that despite nine in 10 integrating…
Recent Posts
- The shape of things to come? Nvidia’s super fast 800GBps SuperNIC card spied and this Connect X-8 AIB vaguely resembles a GPU
- Two AI chatbots speaking to each other in their own special language is the last thing we need
- Samsung’s 9100 PRO SSD line includes its first 8TB NVMe model for consumers
- Sonos speakers and soundbars are 25 percent off for existing customers
- Xbox Cloud Gaming will let you invite friends with just a link
Archives
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022
- June 2022
- May 2022
- April 2022
- March 2022
- February 2022
- January 2022
- December 2021
- November 2021
- October 2021
- September 2021
- August 2021
- July 2021
- June 2021
- May 2021
- April 2021
- March 2021
- February 2021
- January 2021
- December 2020
- November 2020
- October 2020
- September 2020
- August 2020
- July 2020
- June 2020
- May 2020
- April 2020
- March 2020
- February 2020
- January 2020
- December 2019
- November 2019
- September 2018
- October 2017
- December 2011
- August 2010