From the Labs

Founder perspectives, technical research, and field insights on AppSec, AI, and the changing security operating model.

AI-generated code and the security gap

Featured

When the Code Generator Doesn't Know What Secure Looks Like

A new IOActive study quantifies the security gap in AI-generated code: 59% average security performance, 31.6% fully exploitable, near-universal failure on infrastructure code. The numbers confirm what the architecture has been telling us — security can't live inside the generation layer.

6 min read

More writing

When 100 Agents Code in Parallel, Who Understands the System?

Multi-agent coding is no longer experimental — teams are running dozens of AI agents in parallel across repositories. But as velocity scales, so does complexity. The real bottleneck is no longer speed. It's understanding.

4 min read

If AI Writes Better Code, Why Do We Still Need Security?

AI makes code cleaner and more consistent—but security was never about syntax. It's about intent, context, and consequences. Here's why security becomes more necessary than ever in an AI-coded world.

5 min read

When AI Writes the Code — Who Reasons About the Risk?

Recent research reveals that as LLMs become more capable, security risks don't disappear—they shift. The real problem emerging is complexity, and security teams need new intelligence layers to keep up.

3 min read

When Compliance Becomes Continuous, or Becomes Fiction

Traditional compliance processes operate on periodic snapshots, but modern systems change continuously. The gap between claimed security posture and actual system behavior is growing — and only continuous assurance can close it.

4 min read

The Role of AI in Security Automation

Exploring how artificial intelligence is transforming security operations and enabling teams to scale their security efforts effectively.

3 min read

See what changes when security reasoning starts with system context.

Connect your repositories and security signals to see how Neuralsec investigates risk, prioritizes what matters, and closes the loop through remediation and verification.

Request a Demo