Comparison of Static Application Security Testing Tools and Large Language Models for Repo-level Vulnerability Detection
Fuente:
arXiv
Enregistré dans:
| Auteurs principaux: | Zhou, Xin, Tran, Duc-Manh, Le-Cong, Thanh, Zhang, Ting, Irsan, Ivana Clairine, Sumarlin, Joshua, Le, Bach, Lo, David |
|---|---|
| Format: | Preprint |
| Publié: |
2024
|
| Sujets: | |
| Accès en ligne: | |
| Tags: |
Ajouter un tag
Pas de tags, Soyez le premier à ajouter un tag!
|
Documents similaires
CUPID: Leveraging ChatGPT for More Accurate Duplicate Bug Report Detection
par: Zhang, Ting, et autres
Publié: (2023)
par: Zhang, Ting, et autres
Publié: (2023)
Revisiting Sentiment Analysis for Software Engineering in the Era of Large Language Models
par: Zhang, Ting, et autres
Publié: (2023)
par: Zhang, Ting, et autres
Publié: (2023)
VulGuard: An Unified Tool for Evaluating Just-In-Time Vulnerability Prediction Models
par: Nguyen, Duong, et autres
Publié: (2025)
par: Nguyen, Duong, et autres
Publié: (2025)
JavaVFC: Java Vulnerability Fixing Commits from Open-source Software
par: Bui, Tan, et autres
Publié: (2024)
par: Bui, Tan, et autres
Publié: (2024)
Debt Behind the AI Boom: A Large-Scale Empirical Study of AI-Generated Code in the Wild
par: Liu, Yue, et autres
Publié: (2026)
par: Liu, Yue, et autres
Publié: (2026)
Duplicate Bug Report Detection: How Far Are We?
par: Zhang, Ting, et autres
Publié: (2022)
par: Zhang, Ting, et autres
Publié: (2022)
Revisiting Vulnerability Patch Identification on Data in the Wild
par: Irsan, Ivana Clairine, et autres
Publié: (2026)
par: Irsan, Ivana Clairine, et autres
Publié: (2026)
Let the Trial Begin: A Mock-Court Approach to Vulnerability Detection using LLM-Based Agents
par: Widyasari, Ratnadira, et autres
Publié: (2025)
par: Widyasari, Ratnadira, et autres
Publié: (2025)
An Extensive Comparison of Static Application Security Testing Tools
par: Esposito, Matteo, et autres
Publié: (2024)
par: Esposito, Matteo, et autres
Publié: (2024)
Mapping NVD Records to Their Vulnerability-fixing Commits: How Hard is It?
par: Nguyen, Huu Hung, et autres
Publié: (2025)
par: Nguyen, Huu Hung, et autres
Publié: (2025)
Towards Reliable Evaluation of Neural Program Repair with Natural Robustness Testing
par: Le-Cong, Thanh, et autres
Publié: (2024)
par: Le-Cong, Thanh, et autres
Publié: (2024)
Signature in Code Backdoor Detection, how far are we?
par: Le, Quoc Hung, et autres
Publié: (2025)
par: Le, Quoc Hung, et autres
Publié: (2025)
Memory-Efficient Large Language Models for Program Repair with Semantic-Guided Patch Generation
par: Le-Cong, Thanh, et autres
Publié: (2024)
par: Le-Cong, Thanh, et autres
Publié: (2024)
Can LLMs Reason About Program Semantics? A Comprehensive Evaluation of LLMs on Formal Specification Inference
par: Le-Cong, Thanh, et autres
Publié: (2025)
par: Le-Cong, Thanh, et autres
Publié: (2025)
CleanVul: Automatic Function-Level Vulnerability Detection in Code Commits Using LLM Heuristics
par: Li, Yikun, et autres
Publié: (2024)
par: Li, Yikun, et autres
Publié: (2024)
A Comprehensive Study on Static Application Security Testing (SAST) Tools for Android
par: Zhu, Jingyun, et autres
Publié: (2024)
par: Zhu, Jingyun, et autres
Publié: (2024)
From Empirical Evaluation to Context-Aware Enhancement: Repairing Regression Errors with LLMs
par: Ho, Anh, et autres
Publié: (2025)
par: Ho, Anh, et autres
Publié: (2025)
Impact of Code Transformation on Detection of Smart Contract Vulnerabilities
par: Manh, Cuong Tran, et autres
Publié: (2024)
par: Manh, Cuong Tran, et autres
Publié: (2024)
PatchZero: Zero-Shot Automatic Patch Correctness Assessment
par: Zhou, Xin, et autres
Publié: (2023)
par: Zhou, Xin, et autres
Publié: (2023)
Large Language Model for Vulnerability Detection: Emerging Results and Future Directions
par: Zhou, Xin, et autres
Publié: (2024)
par: Zhou, Xin, et autres
Publié: (2024)
Back to the Basics: Rethinking Issue-Commit Linking with LLM-Assisted Retrieval
par: Huang, Huihui, et autres
Publié: (2025)
par: Huang, Huihui, et autres
Publié: (2025)
PatchGuru: Patch Oracle Inference from Natural Language Artifacts with Large Language Models
par: Le-Cong, Thanh, et autres
Publié: (2026)
par: Le-Cong, Thanh, et autres
Publié: (2026)
Static Application Security Testing (SAST) Tools for Smart Contracts: How Far Are We?
par: Li, Kaixuan, et autres
Publié: (2024)
par: Li, Kaixuan, et autres
Publié: (2024)
Representation Learning for Stack Overflow Posts: How Far are We?
par: He, Junda, et autres
Publié: (2023)
par: He, Junda, et autres
Publié: (2023)
Toward Realistic Evaluations of Just-In-Time Vulnerability Prediction
par: Nguyen, Duong, et autres
Publié: (2025)
par: Nguyen, Duong, et autres
Publié: (2025)
Comparison of Static Analysis Architecture Recovery Tools for Microservice Applications
par: Schneider, Simon, et autres
Publié: (2024)
par: Schneider, Simon, et autres
Publié: (2024)
Comparison of Static Analysis Architecture Recovery Tools for Microservice Applications
par: Schneider, Simon, et autres
Publié: (2024)
par: Schneider, Simon, et autres
Publié: (2024)
SAGA: Detecting Security Vulnerabilities Using Static Aspect Analysis
par: Marquer, Yoann, et autres
Publié: (2026)
par: Marquer, Yoann, et autres
Publié: (2026)
ReposVul: A Repository-Level High-Quality Vulnerability Dataset
par: Wang, Xinchen, et autres
Publié: (2024)
par: Wang, Xinchen, et autres
Publié: (2024)
Inferring Properties of Graph Neural Networks
par: Nguyen, Dat, et autres
Publié: (2024)
par: Nguyen, Dat, et autres
Publié: (2024)
Measuring the Unmeasurable: Markov Chain Reliability for LLM Agents
par: Tran-Truong, Phat T., et autres
Publié: (2026)
par: Tran-Truong, Phat T., et autres
Publié: (2026)
IRIS: LLM-Assisted Static Analysis for Detecting Security Vulnerabilities
par: Li, Ziyang, et autres
Publié: (2024)
par: Li, Ziyang, et autres
Publié: (2024)
Many Tools, Few Exploitable Vulnerabilities: A Survey of 246 Static Code Analyzers for Security
par: Hermann, Kevin, et autres
Publié: (2026)
par: Hermann, Kevin, et autres
Publié: (2026)
Adversarial Attacks on Code Models with Discriminative Graph Patterns
par: Nguyen, Thanh-Dat, et autres
Publié: (2023)
par: Nguyen, Thanh-Dat, et autres
Publié: (2023)
Detecting State Manipulation Vulnerabilities in Smart Contracts Using LLM and Static Analysis
par: Wu, Hao, et autres
Publié: (2025)
par: Wu, Hao, et autres
Publié: (2025)
Large Language Models Versus Static Code Analysis Tools: A Systematic Benchmark for Vulnerability Detection
par: Gnieciak, Damian, et autres
Publié: (2025)
par: Gnieciak, Damian, et autres
Publié: (2025)
Tool-integrated Reinforcement Learning for Repo Deep Search
par: Ma, Zexiong, et autres
Publié: (2025)
par: Ma, Zexiong, et autres
Publié: (2025)
An Empirical Study of Static Analysis Tools for Secure Code Review
par: Charoenwet, Wachiraphan, et autres
Publié: (2024)
par: Charoenwet, Wachiraphan, et autres
Publié: (2024)
Perish or Flourish? A Holistic Evaluation of Large Language Models for Code Generation in Functional Programming
par: Lang, Nguyet-Anh H., et autres
Publié: (2026)
par: Lang, Nguyet-Anh H., et autres
Publié: (2026)
Large Language Model for Vulnerability Detection and Repair: Literature Review and the Road Ahead
par: Zhou, Xin, et autres
Publié: (2024)
par: Zhou, Xin, et autres
Publié: (2024)
Documents similaires
-
CUPID: Leveraging ChatGPT for More Accurate Duplicate Bug Report Detection
par: Zhang, Ting, et autres
Publié: (2023) -
Revisiting Sentiment Analysis for Software Engineering in the Era of Large Language Models
par: Zhang, Ting, et autres
Publié: (2023) -
VulGuard: An Unified Tool for Evaluating Just-In-Time Vulnerability Prediction Models
par: Nguyen, Duong, et autres
Publié: (2025) -
JavaVFC: Java Vulnerability Fixing Commits from Open-source Software
par: Bui, Tan, et autres
Publié: (2024) -
Debt Behind the AI Boom: A Large-Scale Empirical Study of AI-Generated Code in the Wild
par: Liu, Yue, et autres
Publié: (2026)