this post was submitted on 25 Apr 2025
102 points (99.0% liked)

Security

846 readers
25 users here now

A community for discussion about cybersecurity, hacking, cybersecurity news, exploits, bounties etc.

Rules :

  1. All instance-wide rules apply.
  2. Keep it totally legal.
  3. Remember the human, be civil.
  4. Be helpful, don't be rude.

Icon base by Delapouite under CC BY 3.0 with modifications to add a gradient

founded 2 years ago
MODERATORS
top 16 comments
sorted by: hot top controversial new old
[–] hperrin@lemmy.ca 4 points 21 hours ago

Vibe coding is just like passing all your coding tasks off to that friend who’s been doing coding as a hobby for the last four months.

[–] iAvicenna@lemmy.world 10 points 1 day ago
[–] ptz@dubvee.org 31 points 1 day ago (1 children)

Who would have thought letting an AI shit out slop code would produce insecure, slop code? I'm shocked, I tell you. Shocked.

Just keep giving it more prompts and editing the output until the squiggles go away and it runs. It will be just fine, surely.

[–] 18USCode2381@infosec.pub 25 points 1 day ago* (last edited 1 day ago)

Vibe coding = VaaS, Vulnerabilities as a Service.

[–] fubarx@lemmy.world 7 points 1 day ago (1 children)

Vibecoding without git (so you can revert back to a last working version) is like:

  • Walking into a nightclub without condoms
  • Trick bicycling without a seat
  • Jumping out of a plane without a reserve chute
  • ...
[–] Kissaki@programming.dev 4 points 1 day ago

In Vibecoding you can let the AI do the git commits and reverts

[–] Valmond@lemmy.world 10 points 1 day ago (1 children)

Even classic coders doesn't automatically write safe and secure code.

[–] Glitch@lemmy.dbzer0.com 0 points 1 day ago

Lol and hammers are terrible at setting screws. I appreciate the heck out of vibe coding a prototype and massaging it into place. It doesn't work well for security, polish, performance, heck most things really. Vibe coding only really replaced stack overflow lol