Vibe Coding’s Hidden Cost: AI‑Generated Code Is Creating Real CVEs episode artwork

EPISODE · Mar 29, 2026 · 38 MIN

Vibe Coding’s Hidden Cost: AI‑Generated Code Is Creating Real CVEs

from You've Already Been Hacked · host Professor CyberRisk

Hosts• Professor CyberRisk• Cyber Cowboy---Live Cyber Maps• Bitdefender Threat Map — https://threatmap.bitdefender.com/• Check Point Threat Map — https://threatmap.checkpoint.com/• Kaspersky Cyber Threat Map — https://cybermap.kaspersky.com/• Talos Intelligence Spam Map — https://talosintelligence.com/ebc_spam---Episode InformationTitle: Vibe Coding’s Hidden Cost: AI‑Generated Code Is Creating Real CVEsEpisode Number: March 27, 2026---OverviewSecurity researchers at Georgia Tech have uncovered a disturbing trend: AI coding assistants are now directly responsible for at least 35 newly reported CVEs, each introduced by AI‑generated code. This marks a fundamental shift in software security — vulnerabilities are no longer just human mistakes or malicious injections, but systemic flaws created by the tools meant to accelerate development.This episode explores how AI‑generated vulnerabilities, leaked iPhone exploits, macOS malware using fake CAPTCHAs, human psychology at RSAC 2026, and a cyberattack on medical device manufacturer Stryker all point to the same conclusion: the threat landscape is evolving faster than traditional defenses can keep up.From the document:“At least 35 new Common Vulnerabilities and Exposures entries have been identified where the flaw was introduced specifically by AI-generated code.”---Guest InformationNone this episode.---Topics Covered• AI‑generated vulnerabilities and the rise of “vibe coding”• Leaked nation‑state iPhone exploits targeting older devices• Infiniti Stealer: macOS malware using ClickFix and fake CAPTCHAs• RSAC 2026: Why phishing still works on everyone• Stryker cyberattack and the fragility of healthcare manufacturing---Top Stories1. AI‑Generated Code Is Creating Real CVEsGeorgia Tech researchers identify at least 35 CVEs introduced by AI coding tools.Link: https://www.infosecurity-magazine.com/news/ai-generated-code-vulnerabilities/2. Leaked iPhone Exploits Leave Millions ExposedNation‑grade spyware targeting older iOS versions is now in the wild.Link: https://techcrunch.com/2026/03/26/apple-made-strides-with-ios-26-security-but-leaked-hacking-tools-still-leave-millions-exposed-to-spyware-attacks/3. Infiniti Stealer Targets macOS UsersA new infostealer uses fake CAPTCHA pages and ClickFix to trick users into running malicious commands.Link: https://www.malwarebytes.com/blog/threat-intel/2026/03/infiniti-stealer-a-new-macos-infostealer-using-clickfix-and-python-nuitka4. RSAC 2026: Phishing Still Works Because of Human PsychologyResearchers show that cognitive biases—not weak passwords—drive phishing success.Link: https://uk.pcmag.com/security/164040/rsac-2026-the-surprising-reason-phishing-still-works-on-everyone5. Stryker Recovers After Major CyberattackA cyberattack disrupts medical device manufacturing, highlighting cyber‑physical risk.Link: https://www.channelnewsasia.com/business/stryker-says-manufacturing-mostly-restored-after-cyberattack-6019376---Additional Cybersecurity News – Titles and URLsNone beyond the top stories this episode.---Resources & LinksNone this episode.---Call to Action• Subscribe: Stay updated on cybersecurity threats.• Leave a Review: Tell us what you think.• Join the Conversation: Follow our community and ask questions.---Sponsor (if applicable)No sponsors this episode.---Podcast Socials & Website• Website: https://www.youvealreadybeenhacked.com• X: @professorcyberrisk• YouTube: https://www.youtube.com/@YABHPodcast• Discord – The Neural Network: https://discord.gg/cz3xdsrqAE

Hosts• Professor CyberRisk• Cyber Cowboy---Live Cyber Maps• Bitdefender Threat Map — https://threatmap.bitdefender.com/• Check Point Threat Map — https://threatmap.checkpoint.com/• Kaspersky Cyber Threat Map — https://cybermap.kaspersky.com/• Talos Intelligence Spam Map — https://talosintelligence.com/ebc_spam---Episode InformationTitle: Vibe Coding’s Hidden Cost: AI‑Generated Code Is Creating Real CVEsEpisode Number: March 27, 2026---OverviewSecurity researchers at Georgia Tech have uncovered a disturbing trend: AI coding assistants are now directly responsible for at least 35 newly reported CVEs, each introduced by AI‑generated code. This marks a fundamental shift in software security — vulnerabilities are no longer just human mistakes or malicious injections, but systemic flaws created by the tools meant to accelerate development.This episode explores how AI‑generated vulnerabilities, leaked iPhone exploits, macOS malware using fake CAPTCHAs, human psychology at RSAC 2026, and a cyberattack on medical device manufacturer Stryker all point to the same conclusion: the threat landscape is evolving faster than traditional defenses can keep up.From the document:“At least 35 new Common Vulnerabilities and Exposures entries have been identified where the flaw was introduced specifically by AI-generated code.”---Guest InformationNone this episode.---Topics Covered• AI‑generated vulnerabilities and the rise of “vibe coding”• Leaked nation‑state iPhone exploits targeting older devices• Infiniti Stealer: macOS malware using ClickFix and fake CAPTCHAs• RSAC 2026: Why phishing still works on everyone• Stryker cyberattack and the fragility of healthcare manufacturing---Top Stories1. AI‑Generated Code Is Creating Real CVEsGeorgia Tech researchers identify at least 35 CVEs introduced by AI coding tools.Link: https://www.infosecurity-magazine.com/news/ai-generated-code-vulnerabilities/2. Leaked iPhone Exploits Leave Millions ExposedNation‑grade spyware targeting older iOS versions is now in the wild.Link: https://techcrunch.com/2026/03/26/apple-made-strides-with-ios-26-security-but-leaked-hacking-tools-still-leave-millions-exposed-to-spyware-attacks/3. Infiniti Stealer Targets macOS UsersA new infostealer uses fake CAPTCHA pages and ClickFix to trick users into running malicious commands.Link: https://www.malwarebytes.com/blog/threat-intel/2026/03/infiniti-stealer-a-new-macos-infostealer-using-clickfix-and-python-nuitka4. RSAC 2026: Phishing Still Works Because of Human PsychologyResearchers show that cognitive biases—not weak passwords—drive phishing success.Link: https://uk.pcmag.com/security/164040/rsac-2026-the-surprising-reason-phishing-still-works-on-everyone5. Stryker Recovers After Major CyberattackA cyberattack disrupts medical device manufacturing, highlighting cyber‑physical risk.Link: https://www.channelnewsasia.com/business/stryker-says-manufacturing-mostly-restored-after-cyberattack-6019376---Additional Cybersecurity News – Titles and URLsNone beyond the top stories this episode.---Resources & LinksNone this episode.---Call to Action• Subscribe: Stay updated on cybersecurity threats.• Leave a Review: Tell us what you think.• Join the Conversation: Follow our community and ask questions.---Sponsor (if applicable)No sponsors this episode.---Podcast Socials & Website• Website: https://www.youvealreadybeenhacked.com• X: @professorcyberrisk• YouTube: https://www.youtube.com/@YABHPodcast• Discord – The Neural Network: https://discord.gg/cz3xdsrqAE

NOW PLAYING

Vibe Coding’s Hidden Cost: AI‑Generated Code Is Creating Real CVEs

0:00 38:20

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

Eat to Live Jenna Fuhrman, Dr. Fuhrman Our health is our most precious gift and smart nutrition can change your life. Each month, join Dr. Fuhrman and his daughter, Jenna Fuhrman as they discuss important topics in the world of nutrition. Eat to Live will change the way you eat and think about food. French Your Way Jessica: Native French teacher founder of French Your Way Boost your French listening skills and test your comprehension with this one of a kind series of podcasts. Get the chance to listen to a real conversation between native speakers talking at normal speed AND customise your learning experience through carefully designed sets of questions (2 levels of difficulty) available for download at www.frenchvoicespodcast.com. All interviews also come with the transcript. French teacher Jessica interviews native speakers of French from around the world who share a bit of their life and passion. Where else would you meet in one same place a French yoga teacher based in Melbourne, a soap manufacturer from Provence, or a couple cycling around the world? HOMELAND HOMELAND The Church is a body not a building. It's the bride of Jesus Christ! Jesus is coming back for a mature bride. That means it's time for the church of Jesus Christ to move from milk to meat. This is the hour of maturity!HOMELAND is an announcement that the church is being set free. Only the church has the ability to transform the world. The kingdom's of this world will become the kingdoms of our Lord and Savior!All of creation has been waiting for this moment! Sons and daughters of God are rising up and taking their seat! DIOSA. Carolina Sanper This podcast is a sacred space created by Carolina Sanper where you connect with your inner wisdom and embody your magnetic feminine power.It is the realization that the mystical realm is where you plant the seeds of your desired reality.It is a portal to your true essence: awareness, presence, and receiving with ease. Welcome home, DIOSA. 🖤

Frequently Asked Questions

How long is this episode of You've Already Been Hacked?

This episode is 38 minutes long.

When was this You've Already Been Hacked episode published?

This episode was published on March 29, 2026.

What is this episode about?

Hosts• Professor CyberRisk• Cyber Cowboy---Live Cyber Maps• Bitdefender Threat Map — https://threatmap.bitdefender.com/• Check Point Threat Map — https://threatmap.checkpoint.com/• Kaspersky Cyber Threat Map — https://cybermap.kaspersky.com/• Talos...

Can I download this You've Already Been Hacked episode?

Yes, you can download this episode by clicking the download button on the episode player, or subscribe to the podcast in your preferred podcast app for automatic downloads.
URL copied to clipboard!