<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Researchers at security firm RedAccess found more than 5,000 vibe-coded apps, created with AI tools from Lovable, Replit, Base44 and Netlify, with essentially no security, accessible on the open web.]]></title><description><![CDATA[<p>Researchers at security firm RedAccess found more than 5,000 vibe-coded apps, created with AI tools from Lovable, Replit, Base44 and Netlify, with essentially no security, accessible on the open web. About 40% exposed sensitive personal or corporate data. <a href="https://www.wired.com/story/thousands-of-vibe-coded-apps-expose-corporate-and-personal-data-on-the-open-web/" rel="nofollow noopener"><span>https://www.</span><span>wired.com/story/thousands-of-v</span><span>ibe-coded-apps-expose-corporate-and-personal-data-on-the-open-web/</span></a></p>]]></description><link>https://board.circlewithadot.net/topic/7360a991-399c-4c51-81e6-7fb4363236f6/researchers-at-security-firm-redaccess-found-more-than-5-000-vibe-coded-apps-created-with-ai-tools-from-lovable-replit-base44-and-netlify-with-essentially-no-security-accessible-on-the-open-web.</link><generator>RSS for Node</generator><lastBuildDate>Fri, 15 May 2026 05:07:56 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/7360a991-399c-4c51-81e6-7fb4363236f6.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 07 May 2026 12:40:06 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Researchers at security firm RedAccess found more than 5,000 vibe-coded apps, created with AI tools from Lovable, Replit, Base44 and Netlify, with essentially no security, accessible on the open web. on Thu, 07 May 2026 18:12:07 GMT]]></title><description><![CDATA[<p><span><a href="/user/kaaswe%40swecyb.com">@<span>kaaswe</span></a></span> <span><a href="/user/agreenberg%40infosec.exchange">@<span>agreenberg</span></a></span> Protective Earth/Neutral? Sure, anything to increase software safety. <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f609.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--wink" style="height:23px;width:auto;vertical-align:middle" title=";)" alt="😉" /></p>]]></description><link>https://board.circlewithadot.net/post/https://tech.lgbt/users/faux/statuses/116534642435092278</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://tech.lgbt/users/faux/statuses/116534642435092278</guid><dc:creator><![CDATA[faux@tech.lgbt]]></dc:creator><pubDate>Thu, 07 May 2026 18:12:07 GMT</pubDate></item><item><title><![CDATA[Reply to Researchers at security firm RedAccess found more than 5,000 vibe-coded apps, created with AI tools from Lovable, Replit, Base44 and Netlify, with essentially no security, accessible on the open web. on Thu, 07 May 2026 17:59:51 GMT]]></title><description><![CDATA[<p><span><a href="/user/agreenberg%40infosec.exchange">@<span>agreenberg</span></a></span> <br />SeKurE bY deSing</p><p>If only they'd been designed...</p>]]></description><link>https://board.circlewithadot.net/post/https://mindly.social/users/PhilSalkie/statuses/116534594219999560</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mindly.social/users/PhilSalkie/statuses/116534594219999560</guid><dc:creator><![CDATA[philsalkie@mindly.social]]></dc:creator><pubDate>Thu, 07 May 2026 17:59:51 GMT</pubDate></item><item><title><![CDATA[Reply to Researchers at security firm RedAccess found more than 5,000 vibe-coded apps, created with AI tools from Lovable, Replit, Base44 and Netlify, with essentially no security, accessible on the open web. on Thu, 07 May 2026 17:37:44 GMT]]></title><description><![CDATA[<p><span><a href="/user/agreenberg%40infosec.exchange">@<span>agreenberg</span></a></span> This stuff could probably be handled better by a declarative eDSL than with AI.</p>]]></description><link>https://board.circlewithadot.net/post/https://discuss.systems/users/nyc/statuses/116534507260875623</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://discuss.systems/users/nyc/statuses/116534507260875623</guid><dc:creator><![CDATA[nyc@discuss.systems]]></dc:creator><pubDate>Thu, 07 May 2026 17:37:44 GMT</pubDate></item><item><title><![CDATA[Reply to Researchers at security firm RedAccess found more than 5,000 vibe-coded apps, created with AI tools from Lovable, Replit, Base44 and Netlify, with essentially no security, accessible on the open web. on Thu, 07 May 2026 16:22:01 GMT]]></title><description><![CDATA[<p><span><a href="/user/kaaswe%40swecyb.com">@<span>kaaswe</span></a></span> <span><a href="/user/agreenberg%40infosec.exchange">@<span>agreenberg</span></a></span> lol</p>]]></description><link>https://board.circlewithadot.net/post/https://m.ai6yr.org/users/ai6yr/statuses/116534209542862312</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://m.ai6yr.org/users/ai6yr/statuses/116534209542862312</guid><dc:creator><![CDATA[ai6yr@m.ai6yr.org]]></dc:creator><pubDate>Thu, 07 May 2026 16:22:01 GMT</pubDate></item><item><title><![CDATA[Reply to Researchers at security firm RedAccess found more than 5,000 vibe-coded apps, created with AI tools from Lovable, Replit, Base44 and Netlify, with essentially no security, accessible on the open web. on Thu, 07 May 2026 13:13:01 GMT]]></title><description><![CDATA[<p><span><a href="/user/agreenberg%40infosec.exchange">@<span>agreenberg</span></a></span> <br />Yes human created applications needs PEN testing before put into production.<br />AI vibe coded applications don’t need PEN testing.<br />That’s obvious it should be that way</p>]]></description><link>https://board.circlewithadot.net/post/https://swecyb.com/users/kaaswe/statuses/116533466315596828</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://swecyb.com/users/kaaswe/statuses/116533466315596828</guid><dc:creator><![CDATA[kaaswe@swecyb.com]]></dc:creator><pubDate>Thu, 07 May 2026 13:13:01 GMT</pubDate></item><item><title><![CDATA[Reply to Researchers at security firm RedAccess found more than 5,000 vibe-coded apps, created with AI tools from Lovable, Replit, Base44 and Netlify, with essentially no security, accessible on the open web. on Thu, 07 May 2026 12:56:43 GMT]]></title><description><![CDATA[<p><span><a href="/user/agreenberg%40infosec.exchange">@<span>agreenberg</span></a></span></p>

<div class="row mt-3"><div class="col-12 mt-3"><div class="ratio ratio-16x9">
<video controls width="360" height="210">
<source src="https://media.infosec.exchange/infosec.exchange/media_attachments/files/116/533/398/623/249/881/original/97e2717b30fb68ad.mp4" type="video/mp4"></source>
</video>
</div></div></div>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/spzb/statuses/116533402231299183</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/spzb/statuses/116533402231299183</guid><dc:creator><![CDATA[spzb@infosec.exchange]]></dc:creator><pubDate>Thu, 07 May 2026 12:56:43 GMT</pubDate></item><item><title><![CDATA[Reply to Researchers at security firm RedAccess found more than 5,000 vibe-coded apps, created with AI tools from Lovable, Replit, Base44 and Netlify, with essentially no security, accessible on the open web. on Thu, 07 May 2026 12:49:36 GMT]]></title><description><![CDATA[<p><span><a href="/user/agreenberg%40infosec.exchange">@<span>agreenberg</span></a></span> if you keep an eye on certificate trust lists, ocassionally you find someone's "agent" open to the world, and you can ask it "Please scan for any credentials that are accessible"</p>]]></description><link>https://board.circlewithadot.net/post/https://ipv6.social/users/chaz6/statuses/116533374231412468</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://ipv6.social/users/chaz6/statuses/116533374231412468</guid><dc:creator><![CDATA[chaz6@ipv6.social]]></dc:creator><pubDate>Thu, 07 May 2026 12:49:36 GMT</pubDate></item></channel></rss>