Using Real-world Bug Bounty Programs in Secure Coding Course: Experience Report
Fuente:
arXiv
Salvato in:
| Autori principali: | Malinka, Kamil, Firc, Anton, Loutocký, Pavel, Vostoupal, Jakub, Krištofík, Andrej, Kasl, František |
|---|---|
| Natura: | Preprint |
| Pubblicazione: |
2024
|
| Soggetti: | |
| Accesso online: | |
| Tags: |
Aggiungi Tag
Nessun Tag, puoi essere il primo ad aggiungerne!!
|
Documenti analoghi
Diffuse or Confuse: A Diffusion Deepfake Speech Dataset
di: Firc, Anton, et al.
Pubblicazione: (2024)
di: Firc, Anton, et al.
Pubblicazione: (2024)
SCDF: A Speaker Characteristics DeepFake Speech Dataset for Bias Analysis
di: Staněk, Vojtěch, et al.
Pubblicazione: (2025)
di: Staněk, Vojtěch, et al.
Pubblicazione: (2025)
Hiding in Plain Sight: Query Obfuscation via Random Multilingual Searches
di: Firc, Anton, et al.
Pubblicazione: (2025)
di: Firc, Anton, et al.
Pubblicazione: (2025)
Evolutionary Multi-Objective Fusion of Deepfake Speech Detectors
di: Staněk, Vojtěch, et al.
Pubblicazione: (2026)
di: Staněk, Vojtěch, et al.
Pubblicazione: (2026)
Investigating Vulnerability Disclosures in Open-Source Software Using Bug Bounty Reports and Security Advisories
di: Ayala, Jessy, et al.
Pubblicazione: (2025)
di: Ayala, Jessy, et al.
Pubblicazione: (2025)
Enhancing Security of AI-Based Code Synthesis with GitHub Copilot via Cheap and Efficient Prompt-Engineering
di: Res, Jakub, et al.
Pubblicazione: (2024)
di: Res, Jakub, et al.
Pubblicazione: (2024)
CAI: An Open, Bug Bounty-Ready Cybersecurity AI
di: Mayoral-Vilches, Víctor, et al.
Pubblicazione: (2025)
di: Mayoral-Vilches, Víctor, et al.
Pubblicazione: (2025)
From Reviewers' Lens: Understanding Bug Bounty Report Invalid Reasons with LLMs
di: Zheng, Jiangrui, et al.
Pubblicazione: (2025)
di: Zheng, Jiangrui, et al.
Pubblicazione: (2025)
Incentives and Outcomes in Bug Bounties
di: Wang, Serena, et al.
Pubblicazione: (2025)
di: Wang, Serena, et al.
Pubblicazione: (2025)
A Deep Dive Into How Open-Source Project Maintainers Review and Resolve Bug Bounty Reports
di: Ayala, Jessy, et al.
Pubblicazione: (2024)
di: Ayala, Jessy, et al.
Pubblicazione: (2024)
Merchants of Vulnerabilities: How Bug Bounty Programs Benefit Software Vendors
di: Gal-Or, Esther, et al.
Pubblicazione: (2024)
di: Gal-Or, Esther, et al.
Pubblicazione: (2024)
STOPA: A Database of Systematic VariaTion Of DeePfake Audio for Open-Set Source Tracing and Attribution
di: Firc, Anton, et al.
Pubblicazione: (2025)
di: Firc, Anton, et al.
Pubblicazione: (2025)
Fixing Hardware Security Bugs with Large Language Models
di: Ahmad, Baleegh, et al.
Pubblicazione: (2023)
di: Ahmad, Baleegh, et al.
Pubblicazione: (2023)
Bounty Hunter: Autonomous, Comprehensive Emulation of Multi-Faceted Adversaries
di: Hackländer-Jansen, Louis, et al.
Pubblicazione: (2025)
di: Hackländer-Jansen, Louis, et al.
Pubblicazione: (2025)
An Investigation of Hardware Security Bug Characteristics in Open-Source Projects
di: Ah-kiow, Joey, et al.
Pubblicazione: (2024)
di: Ah-kiow, Joey, et al.
Pubblicazione: (2024)
PoS-CoPOR: Proof-of-Stake Consensus Protocol with Native Onion Routing Providing Scalability and DoS-Resistance
di: Homoliak, Ivan, et al.
Pubblicazione: (2025)
di: Homoliak, Ivan, et al.
Pubblicazione: (2025)
Assessing LLMs in Malicious Code Deobfuscation of Real-world Malware Campaigns
di: Patsakis, Constantinos, et al.
Pubblicazione: (2024)
di: Patsakis, Constantinos, et al.
Pubblicazione: (2024)
SEDAC: A CVAE-Based Data Augmentation Method for Security Bug Report Identification
di: Liao, Y., et al.
Pubblicazione: (2024)
di: Liao, Y., et al.
Pubblicazione: (2024)
Characteristics, Root Causes, and Detection of Incomplete Security Bug Fixes in the Linux Kernel
di: Liu, Qiang, et al.
Pubblicazione: (2025)
di: Liu, Qiang, et al.
Pubblicazione: (2025)
Evaluating Large Language Models for Security Bug Report Prediction
di: Soltaniani, Farnaz, et al.
Pubblicazione: (2026)
di: Soltaniani, Farnaz, et al.
Pubblicazione: (2026)
It's a Feature, Not a Bug: Secure and Auditable State Rollback for Confidential Cloud Applications
di: Burke, Quinn, et al.
Pubblicazione: (2025)
di: Burke, Quinn, et al.
Pubblicazione: (2025)
Give LLMs a Security Course: Securing Retrieval-Augmented Code Generation via Knowledge Injection
di: Lin, Bo, et al.
Pubblicazione: (2025)
di: Lin, Bo, et al.
Pubblicazione: (2025)
Integrating Log-Based Security Analytics in Agile Workflows: A Real-World Experience Report
di: Thool, Arpit, et al.
Pubblicazione: (2026)
di: Thool, Arpit, et al.
Pubblicazione: (2026)
From Programming Bugs to Multimillion-Dollar Scams: An Analysis of Trapdoor Tokens on Uniswap
di: Huynh, Phuong Duy, et al.
Pubblicazione: (2023)
di: Huynh, Phuong Duy, et al.
Pubblicazione: (2023)
On the Security and Design of Cryptosystems Using Gabidulin-Kronecker Product Codes
di: Lau, Terry Shue Chien, et al.
Pubblicazione: (2024)
di: Lau, Terry Shue Chien, et al.
Pubblicazione: (2024)
Security Bug Report Prediction Within and Across Projects: A Comparative Study of BERT and Random Forest
di: Soltaniani, Farnaz, et al.
Pubblicazione: (2025)
di: Soltaniani, Farnaz, et al.
Pubblicazione: (2025)
TYPEPULSE: Detecting Type Confusion Bugs in Rust Programs
di: Chen, Hung-Mao, et al.
Pubblicazione: (2025)
di: Chen, Hung-Mao, et al.
Pubblicazione: (2025)
Code Agent can be an End-to-end System Hacker: Benchmarking Real-world Threats of Computer-use Agent
di: Luo, Weidi, et al.
Pubblicazione: (2025)
di: Luo, Weidi, et al.
Pubblicazione: (2025)
Attacker Control and Bug Prioritization
di: Lacombe, Guilhem, et al.
Pubblicazione: (2025)
di: Lacombe, Guilhem, et al.
Pubblicazione: (2025)
SecureCodeRL: Security-Aware Reinforcement Learning for Code Generation with Partial-Credit Rewards
di: Sijwali, Suryansh Singh, et al.
Pubblicazione: (2026)
di: Sijwali, Suryansh Singh, et al.
Pubblicazione: (2026)
Broken Object Level Authorization in the Wild: An Empirical Taxonomy from 100+ Bug Bounty Disclosures
di: Kaur, Bandana
Pubblicazione: (2026)
di: Kaur, Bandana
Pubblicazione: (2026)
LLM vs. SAST: A Technical Analysis on Detecting Coding Bugs of GPT4-Advanced Data Analysis
di: Tehrani, Madjid G., et al.
Pubblicazione: (2025)
di: Tehrani, Madjid G., et al.
Pubblicazione: (2025)
What is Quantum Computer Security?
di: Deshpande, Sanjay, et al.
Pubblicazione: (2025)
di: Deshpande, Sanjay, et al.
Pubblicazione: (2025)
SecRepoBench: Benchmarking Code Agents for Secure Code Completion in Real-World Repositories
di: Shen, Chihao, et al.
Pubblicazione: (2025)
di: Shen, Chihao, et al.
Pubblicazione: (2025)
RealSec-bench: A Benchmark for Evaluating Secure Code Generation in Real-World Repositories
di: Wang, Yanlin, et al.
Pubblicazione: (2026)
di: Wang, Yanlin, et al.
Pubblicazione: (2026)
LLMSecCode: Evaluating Large Language Models for Secure Coding
di: Rydén, Anton, et al.
Pubblicazione: (2024)
di: Rydén, Anton, et al.
Pubblicazione: (2024)
How Secure is Code Generated by ChatGPT?
di: Khoury, Raphaël, et al.
Pubblicazione: (2023)
di: Khoury, Raphaël, et al.
Pubblicazione: (2023)
What Do They Fix? LLM-Aided Categorization of Security Patches for Critical Memory Bugs
di: Li, Xingyu, et al.
Pubblicazione: (2025)
di: Li, Xingyu, et al.
Pubblicazione: (2025)
The Ephemeral Threat: Assessing the Security of Algorithmic Trading Systems powered by Deep Learning
di: Rizvani, Advije, et al.
Pubblicazione: (2025)
di: Rizvani, Advije, et al.
Pubblicazione: (2025)
Fixing 7,400 Bugs for 1$: Cheap Crash-Site Program Repair
di: Zheng, Han, et al.
Pubblicazione: (2025)
di: Zheng, Han, et al.
Pubblicazione: (2025)
Documenti analoghi
-
Diffuse or Confuse: A Diffusion Deepfake Speech Dataset
di: Firc, Anton, et al.
Pubblicazione: (2024) -
SCDF: A Speaker Characteristics DeepFake Speech Dataset for Bias Analysis
di: Staněk, Vojtěch, et al.
Pubblicazione: (2025) -
Hiding in Plain Sight: Query Obfuscation via Random Multilingual Searches
di: Firc, Anton, et al.
Pubblicazione: (2025) -
Evolutionary Multi-Objective Fusion of Deepfake Speech Detectors
di: Staněk, Vojtěch, et al.
Pubblicazione: (2026) -
Investigating Vulnerability Disclosures in Open-Source Software Using Bug Bounty Reports and Security Advisories
di: Ayala, Jessy, et al.
Pubblicazione: (2025)