ON-DEMAND HACKING SESSION

Live Hack: Exploiting AI-Generated Code

In this on-demand session, we dive into the realm of AI-assisted coding tools, specifically GitHub Copilot and ChatGPT, exposing both their potential and inherent security risks.

Watch to:
  • Gain a comprehensive understanding of AI in development and the prevalent security risks associated with AI-generated code
  • Use GitHub Copilot to build a conference demo app, featuring a dynamic homepage, searchable product catalog, and personalized user profiles
  • Uncover and exploit vulnerabilities within the AI-generated code, showcasing real-world threats such as SQL injection, cross-site scripting, directory traversal, and more.
  • Gain actionable insights into effective strategies for mitigating and fixing AI-generated vulnerabilities.
  • Explore the OWASP Top 10 for LLMs, which offers a framework to address generative AI security challenges.

Watch the Recording

By the end of the session, you will have accomplished the following:

  • Successfully built a demo app using AI-assisted coding tools.
  • Actively hacked and remediated at least three vulnerabilities.
  • Gained invaluable insights into best practices for securely using generative AI coding tools.

To make the most of this session, we recommend the following prerequisites:

  • ChatGPT account
  • GitHub Copilot account
  • Free Snyk account for enhanced security analysis
  • IDE of your choice (VS Code, Visual Studio, Eclipse, Jetbrains)

Speakers

MicahSilverman

Micah Silverman

Dir. Developer Relations | Snyk

sonya moisset.png

Sonya Moisset

Staff Developer Advocate | Snyk

Patch Logo Segment Patch Logo Segment Patch Logo Segment Patch Logo Segment Patch Logo Segment Patch Logo Segment Patch Logo Segment Patch Logo Segment Patch Logo Segment Patch Logo Segment Patch Logo Segment Patch Logo Segment Patch Logo Segment