The Next Era of AppSec: Why AI-Generated Code Needs Offensive Dynamic Testing
2026-03-20T20:52:00Z•ec4b8af55ff0d80ad0ca5c189688e0bbe6789710a5ad4053d65552be20d6be7a
agent-securityagent-skills-registryai-generated-codeappsecattack-surfacecursordastdynamic-testinginnovation-hubllm-securityoffensive-testingprompt-securitysecurity-scoringsnyksupply-chain-securitytesslundocumented-apis
What happened
Snyk highlights the rising AppSec risks introduced by AI-generated code and autonomous agents, arguing that static analysis alone is insufficient and that offensive dynamic testing (DAST/active testing) combined with code-level context is needed to determine what is actually exploitable. They cite findings such as ~62% of LLM-generated code testing as insecure and note agents using undocumented APIs expand the attack surface. The posts also announce Snyk initiatives: an AI-powered dynamic testing approach, a San Francisco innovation hub, a partnership with Tessl to add Snyk security scores to
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- snyk_blog
- Record identifier
- ec4b8af55ff0d80ad0ca5c189688e0bbe6789710a5ad4053d65552be20d6be7a
- Enrichment time
- 2026-03-20T20:52:00Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.