The Hidden Security Risks of AI Coding Agents

The AI Native Dev - from Copilot today to AI Native Software Development tomorrow
19 May 2026 41 min
0:00 --:--
Episode Description
Your AI coding agent has access to your secrets, pulls in content from the outside world, and can run shell commands. According to Joe Holdcroft, that combination makes you one prompt injection away from a very bad time. The tools haven't changed the fundamentals of security — they've just made every existing risk move faster, and introduced a few genuinely new ones. What we cover:Why the "lethal trifecta" of agent capabilities creates a novel threat surfaceHow text and markdown files have becom

Shared via Hopper