AI bots hallucinate software packages and devs download them
Briefly

One of the businesses fooled by AI into incorporating a fake package is Alibaba, downloaded thousands of times, posing potential disastrous consequences.
AI-generated software packages are being explored to test if invented package names can be used to distribute malicious code, posing security risks.
Generative AI models could lead to persistent hallucinated software packages, highlighting the need to verify dependencies and avoid potential exploitation.
The experiment involved turning AI-conceived package 'huggingface-cli' into a legit dependency, raising concerns over the AI's influence on software development practices.
Read at Theregister
[
add
]
[
|
|
]