Security Audit Reveals Vulnerabilities in AI Coding Agents

Security Audit Reveals Vulnerabilities in AI Coding Agents

First seen 23 Mar 2026, 12:36 UTC ThenewstackPrnewswireFeeds2.Feedburner 67.5

Article Content

Browse articles
ThreatCluster

A security audit by Mobb.ai found 140,963 security issues in 22,511 AI coding skills used by popular coding agents like Claude Code, Cursor, and GitHub Copilot. The audit revealed that 34% of the skills contained vulnerabilities, with 27% showing command execution patterns and 16% including remote code execution risks. The skills execute with full system permissions, posing a significant risk if compromised. Straiker has launched Discover AI and Defend AI to enhance security for coding agents, addressing the lack of oversight and visibility in enterprise systems. With 85% of developers using AI coding tools, the potential for data exfiltration and endpoint takeover is substantial. The findings highlight the urgent need for improved security measures in the rapidly evolving landscape of AI coding agents.

Key Points: • 140,963 security findings identified in a large-scale audit of AI coding skills. • 34% of skills contained vulnerabilities, including command execution and remote code execution risks. • Straiker launched new tools to enhance security for coding agents amid rising risks.

Timeline

2026-03-22
Mobb.ai released findings from a security audit of AI coding skills.
2026-03-23
Straiker launched Discover AI and Defend AI for agent security.