CriticalSecurity & Privacy
Researchers: 5K+ web apps built using AI coding tools like Lovable, Base44, and Replit had little to no authentication, and ~40% of them exposed sensitive data (Andy Greenberg/Wired)
Security researchers discovered that over 5,000 web applications built with popular AI coding tools (Lovable, Base44, Replit) contained critical vulnerabilities, with approximately 40% exposing sensitive data and many lacking basic authentication mechanisms. This widespread security gap represents a significant organizational risk as non-technical staff increasingly use AI tools to rapidly develop applications outside traditional IT governance and security review processes. The findings underscore an urgent need for enterprises to establish security guardrails and oversight policies around AI-assisted development tools to prevent data breaches and regulatory compliance violations.

Andy Greenberg / Wired: Researchers: 5K+ web apps built using AI coding tools like Lovable, Base44, and Replit had little to no authentication, and ~40% of them exposed sensitive data — Companies like Lovable, Base44, Replit, and Netlify use AI to let anyone build a web app in seconds—and in thousands of cases …