Toward Effective Secure Code Reviews: An Empirical Study of Security-Related Coding Weaknesses
Fuente:
arXiv
Gespeichert in:
| Hauptverfasser: | Charoenwet, Wachiraphan, Thongtanunam, Patanamon, Pham, Van-Thuan, Treude, Christoph |
|---|---|
| Format: | Preprint |
| Veröffentlicht: |
2023
|
| Schlagworte: | |
| Online-Zugang: | |
| Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Ähnliche Einträge
An Empirical Study of Static Analysis Tools for Secure Code Review
von: Charoenwet, Wachiraphan, et al.
Veröffentlicht: (2024)
von: Charoenwet, Wachiraphan, et al.
Veröffentlicht: (2024)
Enhancing Code Review through Fuzzing and Likely Invariants
von: Charoenwet, Wachiraphan, et al.
Veröffentlicht: (2025)
von: Charoenwet, Wachiraphan, et al.
Veröffentlicht: (2025)
Improving Automated Code Reviews: Learning from Experience
von: Lin, Hong Yi, et al.
Veröffentlicht: (2024)
von: Lin, Hong Yi, et al.
Veröffentlicht: (2024)
Leveraging Reviewer Experience in Code Review Comment Generation
von: Lin, Hong Yi, et al.
Veröffentlicht: (2024)
von: Lin, Hong Yi, et al.
Veröffentlicht: (2024)
AgenticSCR: An Autonomous Agentic Secure Code Review for Immature Vulnerabilities Detection
von: Charoenwet, Wachiraphan, et al.
Veröffentlicht: (2026)
von: Charoenwet, Wachiraphan, et al.
Veröffentlicht: (2026)
Encoding Version History Context for Better Code Representation
von: Nguyen, Huy, et al.
Veröffentlicht: (2024)
von: Nguyen, Huy, et al.
Veröffentlicht: (2024)
HalluJudge: A Reference-Free Hallucination Detection for Context Misalignment in Code Review Automation
von: Tantithamthavorn, Kla, et al.
Veröffentlicht: (2026)
von: Tantithamthavorn, Kla, et al.
Veröffentlicht: (2026)
Enhancing Neural Code Representation with Additional Context
von: Nguyen, Huy, et al.
Veröffentlicht: (2025)
von: Nguyen, Huy, et al.
Veröffentlicht: (2025)
Following Dragons: Code Review-Guided Fuzzing
von: Luu, Viet Hoang, et al.
Veröffentlicht: (2026)
von: Luu, Viet Hoang, et al.
Veröffentlicht: (2026)
CodeReviewQA: The Code Review Comprehension Assessment for Large Language Models
von: Lin, Hong Yi, et al.
Veröffentlicht: (2025)
von: Lin, Hong Yi, et al.
Veröffentlicht: (2025)
Code Ownership: The Principles, Differences, and Their Associations with Software Quality
von: Thongtanunam, Patanamon, et al.
Veröffentlicht: (2024)
von: Thongtanunam, Patanamon, et al.
Veröffentlicht: (2024)
Fine-grained Approaches for Confidence Calibration of LLMs in Automated Code Revision
von: Lin, Hong Yi, et al.
Veröffentlicht: (2026)
von: Lin, Hong Yi, et al.
Veröffentlicht: (2026)
Too Noisy To Learn: Enhancing Data Quality for Code Review Comment Generation
von: Liu, Chunhua, et al.
Veröffentlicht: (2025)
von: Liu, Chunhua, et al.
Veröffentlicht: (2025)
When AI Models Become Dependencies: Studying the Evolution of Pre-Trained Model Reuse in Downstream Software Systems
von: Banyongrakkul, Peerachai, et al.
Veröffentlicht: (2026)
von: Banyongrakkul, Peerachai, et al.
Veröffentlicht: (2026)
From Release to Adoption: Challenges in Reusing Pre-trained AI Models for Downstream Developers
von: Banyongrakkul, Peerachai, et al.
Veröffentlicht: (2025)
von: Banyongrakkul, Peerachai, et al.
Veröffentlicht: (2025)
Hallucinations in Code Change to Natural Language Generation: Prevalence and Evaluation of Detection Metrics
von: Liu, Chunhua, et al.
Veröffentlicht: (2025)
von: Liu, Chunhua, et al.
Veröffentlicht: (2025)
Automatically Recommend Code Updates: Are We There Yet?
von: Liu, Yue, et al.
Veröffentlicht: (2022)
von: Liu, Yue, et al.
Veröffentlicht: (2022)
AI-Assisted Code Review as a Scaffold for Code Quality and Self-Regulated Learning: An Experience Report
von: Oliveira, Eduardo, et al.
Veröffentlicht: (2026)
von: Oliveira, Eduardo, et al.
Veröffentlicht: (2026)
A Systematic Literature Review on Reasons and Approaches for Accurate Effort Estimations in Agile
von: Pasuksmit, Jirat, et al.
Veröffentlicht: (2024)
von: Pasuksmit, Jirat, et al.
Veröffentlicht: (2024)
Deterministic vs. Probabilistic Summarisation: An Empirical Trade-off Study in Design Pattern Centric Java Code
von: Nazar, Najam, et al.
Veröffentlicht: (2026)
von: Nazar, Najam, et al.
Veröffentlicht: (2026)
Should Code Models Learn Pedagogically? A Preliminary Evaluation of Curriculum Learning for Real-World Software Engineering Tasks
von: Khant, Kyi Shin, et al.
Veröffentlicht: (2025)
von: Khant, Kyi Shin, et al.
Veröffentlicht: (2025)
Adversarial Attacks on Code Models with Discriminative Graph Patterns
von: Nguyen, Thanh-Dat, et al.
Veröffentlicht: (2023)
von: Nguyen, Thanh-Dat, et al.
Veröffentlicht: (2023)
Open Source Software Development Tool Installation: Challenges and Strategies For Novice Developers
von: Salerno, Larissa, et al.
Veröffentlicht: (2024)
von: Salerno, Larissa, et al.
Veröffentlicht: (2024)
Security Incentivization: An Empirical Study of how Micropayments Impact Code Security
von: Rass, Stefan, et al.
Veröffentlicht: (2026)
von: Rass, Stefan, et al.
Veröffentlicht: (2026)
Security Weaknesses of Copilot-Generated Code in GitHub Projects: An Empirical Study
von: Fu, Yujia, et al.
Veröffentlicht: (2023)
von: Fu, Yujia, et al.
Veröffentlicht: (2023)
Automated Code Review Assignments: An Alternative Perspective of Code Ownership on GitHub
von: Lulla, Jai Lal, et al.
Veröffentlicht: (2025)
von: Lulla, Jai Lal, et al.
Veröffentlicht: (2025)
Towards the First Code Contribution: Processes and Information Needs
von: Treude, Christoph, et al.
Veröffentlicht: (2024)
von: Treude, Christoph, et al.
Veröffentlicht: (2024)
Context-Augmented Code Generation Using Programming Knowledge Graphs
von: Seddik, Shahd, et al.
Veröffentlicht: (2026)
von: Seddik, Shahd, et al.
Veröffentlicht: (2026)
Enhancing Source Code Representations for Deep Learning with Static Analysis
von: Guan, Xueting, et al.
Veröffentlicht: (2024)
von: Guan, Xueting, et al.
Veröffentlicht: (2024)
Exploring Security Practices in Infrastructure as Code: An Empirical Study
von: Verdet, Alexandre, et al.
Veröffentlicht: (2023)
von: Verdet, Alexandre, et al.
Veröffentlicht: (2023)
iCodeReviewer: Improving Secure Code Review with Mixture of Prompts
von: Peng, Yun, et al.
Veröffentlicht: (2025)
von: Peng, Yun, et al.
Veröffentlicht: (2025)
Exploring the Potential of Large Language Models in Fine-Grained Review Comment Classification
von: Nguyen, Linh, et al.
Veröffentlicht: (2025)
von: Nguyen, Linh, et al.
Veröffentlicht: (2025)
Issue-Oriented Agent-Based Framework for Automated Review Comment Generation
von: Li, Shuochuan, et al.
Veröffentlicht: (2025)
von: Li, Shuochuan, et al.
Veröffentlicht: (2025)
Does AI Code Review Lead to Code Changes? A Case Study of GitHub Actions
von: Sun, Kexin, et al.
Veröffentlicht: (2025)
von: Sun, Kexin, et al.
Veröffentlicht: (2025)
Effective Code Membership Inference for Code Completion Models via Adversarial Prompts
von: Jiang, Yuan, et al.
Veröffentlicht: (2025)
von: Jiang, Yuan, et al.
Veröffentlicht: (2025)
An Empirical Study of API Misuses of Data-Centric Libraries
von: Galappaththi, Akalanka, et al.
Veröffentlicht: (2024)
von: Galappaththi, Akalanka, et al.
Veröffentlicht: (2024)
What Types of Code Review Comments Do Developers Most Frequently Resolve?
von: Goldman, Saul, et al.
Veröffentlicht: (2025)
von: Goldman, Saul, et al.
Veröffentlicht: (2025)
Detect Repair Verify for Securing LLM Generated Code: A Multi-Language Empirical Study
von: Cheng, Cheng
Veröffentlicht: (2026)
von: Cheng, Cheng
Veröffentlicht: (2026)
The Shift from Writing to Pruning Software: A Bonsai-Inspired IDE for Reshaping AI Generated Code
von: Kula, Raula Gaikovina, et al.
Veröffentlicht: (2025)
von: Kula, Raula Gaikovina, et al.
Veröffentlicht: (2025)
On Autopilot? An Empirical Study of Human-AI Teaming and Review Practices in Open Source
von: Gao, Haoyu, et al.
Veröffentlicht: (2026)
von: Gao, Haoyu, et al.
Veröffentlicht: (2026)
Ähnliche Einträge
-
An Empirical Study of Static Analysis Tools for Secure Code Review
von: Charoenwet, Wachiraphan, et al.
Veröffentlicht: (2024) -
Enhancing Code Review through Fuzzing and Likely Invariants
von: Charoenwet, Wachiraphan, et al.
Veröffentlicht: (2025) -
Improving Automated Code Reviews: Learning from Experience
von: Lin, Hong Yi, et al.
Veröffentlicht: (2024) -
Leveraging Reviewer Experience in Code Review Comment Generation
von: Lin, Hong Yi, et al.
Veröffentlicht: (2024) -
AgenticSCR: An Autonomous Agentic Secure Code Review for Immature Vulnerabilities Detection
von: Charoenwet, Wachiraphan, et al.
Veröffentlicht: (2026)