Unintentional Security Flaws in Code: Automated Defense via Root Cause Analysis
Fuente:
arXiv
Salvato in:
| Autori principali: | Islam, Nafis Tanveer, Bethany, Mazal, Manuel, Dylan, Jadliwala, Murtuza, Najafirad, Peyman |
|---|---|
| Natura: | Preprint |
| Pubblicazione: |
2024
|
| Soggetti: | |
| Accesso online: | |
| Tags: |
Aggiungi Tag
Nessun Tag, puoi essere il primo ad aggiungerne!!
|
Documenti analoghi
Code Security Vulnerability Repair Using Reinforcement Learning with Large Language Models
di: Islam, Nafis Tanveer, et al.
Pubblicazione: (2024)
di: Islam, Nafis Tanveer, et al.
Pubblicazione: (2024)
Causative Insights into Open Source Software Security using Large Language Code Embeddings and Semantic Vulnerability Graph
di: Islam, Nafis Tanveer, et al.
Pubblicazione: (2024)
di: Islam, Nafis Tanveer, et al.
Pubblicazione: (2024)
Root-Cause-Driven Automated Vulnerability Repair
di: Wang, Hulin, et al.
Pubblicazione: (2026)
di: Wang, Hulin, et al.
Pubblicazione: (2026)
CodableLLM: Automating Decompiled and Source Code Mapping for LLM Dataset Generation
di: Manuel, Dylan, et al.
Pubblicazione: (2025)
di: Manuel, Dylan, et al.
Pubblicazione: (2025)
VulInstruct: Teaching LLMs Root-Cause Reasoning for Vulnerability Detection via Security Specifications
di: Zhu, Hao, et al.
Pubblicazione: (2025)
di: Zhu, Hao, et al.
Pubblicazione: (2025)
AutoSafeCoder: A Multi-Agent Framework for Securing LLM Code Generation through Static Analysis and Fuzz Testing
di: Nunez, Ana, et al.
Pubblicazione: (2024)
di: Nunez, Ana, et al.
Pubblicazione: (2024)
We Have a Package for You! A Comprehensive Analysis of Package Hallucinations by Code Generating LLMs
di: Spracklen, Joseph, et al.
Pubblicazione: (2024)
di: Spracklen, Joseph, et al.
Pubblicazione: (2024)
How Secure is Secure Code Generation? Adversarial Prompts Put LLM Defenses to the Test
di: Tessa, Melissa, et al.
Pubblicazione: (2026)
di: Tessa, Melissa, et al.
Pubblicazione: (2026)
Enhancing Source Code Security with LLMs: Demystifying The Challenges and Generating Reliable Repairs
di: Islam, Nafis Tanveer, et al.
Pubblicazione: (2024)
di: Islam, Nafis Tanveer, et al.
Pubblicazione: (2024)
Enhancing Reverse Engineering: Investigating and Benchmarking Large Language Models for Vulnerability Analysis in Decompiled Binaries
di: Manuel, Dylan, et al.
Pubblicazione: (2024)
di: Manuel, Dylan, et al.
Pubblicazione: (2024)
Semantic Consensus Decoding: Backdoor Defense for Verilog Code Generation
di: Yang, Guang, et al.
Pubblicazione: (2026)
di: Yang, Guang, et al.
Pubblicazione: (2026)
Give LLMs a Security Course: Securing Retrieval-Augmented Code Generation via Knowledge Injection
di: Lin, Bo, et al.
Pubblicazione: (2025)
di: Lin, Bo, et al.
Pubblicazione: (2025)
Uncovering EDK2 Firmware Flaws: Insights from Code Audit Tools
di: Farahani, Mahsa, et al.
Pubblicazione: (2024)
di: Farahani, Mahsa, et al.
Pubblicazione: (2024)
LLM Security Guard for Code
di: Kavian, Arya, et al.
Pubblicazione: (2024)
di: Kavian, Arya, et al.
Pubblicazione: (2024)
Assessing Vulnerability in Smart Contracts: The Role of Code Complexity Metrics in Security Analysis
di: Tehrani, Masoud Jamshidiyan
Pubblicazione: (2024)
di: Tehrani, Masoud Jamshidiyan
Pubblicazione: (2024)
Toward Automated Security Risk Detection in Large Software Using Call Graph Analysis
di: Pecka, Nicholas, et al.
Pubblicazione: (2025)
di: Pecka, Nicholas, et al.
Pubblicazione: (2025)
DUALGUAGE: Automated Joint Security-Functionality Benchmarking for Secure Code Generation
di: Pathak, Abhijeet, et al.
Pubblicazione: (2025)
di: Pathak, Abhijeet, et al.
Pubblicazione: (2025)
Security Incentivization: An Empirical Study of how Micropayments Impact Code Security
di: Rass, Stefan, et al.
Pubblicazione: (2026)
di: Rass, Stefan, et al.
Pubblicazione: (2026)
How to Compare the Security of Code Written by Humans to LLM-generated Code
di: Balebako, Rebecca, et al.
Pubblicazione: (2026)
di: Balebako, Rebecca, et al.
Pubblicazione: (2026)
SecCodePRM: A Process Reward Model for Code Security
di: Yu, Weichen, et al.
Pubblicazione: (2026)
di: Yu, Weichen, et al.
Pubblicazione: (2026)
Secure Coding with AI -- From Detection to Repair
di: Belozerov, Vladislav, et al.
Pubblicazione: (2025)
di: Belozerov, Vladislav, et al.
Pubblicazione: (2025)
An Unbiased Transformer Source Code Learning with Semantic Vulnerability Graph
di: Islam, Nafis Tanveer, et al.
Pubblicazione: (2023)
di: Islam, Nafis Tanveer, et al.
Pubblicazione: (2023)
Exploring Security Practices in Infrastructure as Code: An Empirical Study
di: Verdet, Alexandre, et al.
Pubblicazione: (2023)
di: Verdet, Alexandre, et al.
Pubblicazione: (2023)
AIM: Automated Input Set Minimization for Metamorphic Security Testing
di: Chaleshtari, Nazanin Bayati, et al.
Pubblicazione: (2024)
di: Chaleshtari, Nazanin Bayati, et al.
Pubblicazione: (2024)
QLPro: Automated Code Vulnerability Discovery via LLM and Static Code Analysis Integration
di: Hu, Junze, et al.
Pubblicazione: (2025)
di: Hu, Junze, et al.
Pubblicazione: (2025)
Circumventing Platform Defenses at Scale: Automated Content Replication from YouTube to Blockchain-Based Decentralized Storage
di: Akram, Muhammad Zeeshan
Pubblicazione: (2026)
di: Akram, Muhammad Zeeshan
Pubblicazione: (2026)
Security of Language Models for Code: A Systematic Literature Review
di: Chen, Yuchen, et al.
Pubblicazione: (2024)
di: Chen, Yuchen, et al.
Pubblicazione: (2024)
An Empirical Security Evaluation of LLM-Generated Cryptographic Rust Code
di: Elsayed, Mohamed, et al.
Pubblicazione: (2026)
di: Elsayed, Mohamed, et al.
Pubblicazione: (2026)
Detecting Misuse of Security APIs: A Systematic Review
di: Mousavi, Zahra, et al.
Pubblicazione: (2023)
di: Mousavi, Zahra, et al.
Pubblicazione: (2023)
Exploring the Security Threats of Retriever Backdoors in Retrieval-Augmented Code Generation
di: Li, Tian, et al.
Pubblicazione: (2025)
di: Li, Tian, et al.
Pubblicazione: (2025)
Deep Learning Model Security: Threats and Defenses
di: Wang, Tianyang, et al.
Pubblicazione: (2024)
di: Wang, Tianyang, et al.
Pubblicazione: (2024)
SmartShift: A Secure and Efficient Approach to Smart Contract Migration
di: Hossain, Tahrim, et al.
Pubblicazione: (2025)
di: Hossain, Tahrim, et al.
Pubblicazione: (2025)
Does Teaming-Up LLMs Improve Secure Code Generation? A Comprehensive Evaluation with Multi-LLMSecCodeEval
di: Sabir, Bushra, et al.
Pubblicazione: (2026)
di: Sabir, Bushra, et al.
Pubblicazione: (2026)
Exploring the Security Threats of Knowledge Base Poisoning in Retrieval-Augmented Code Generation
di: Lin, Bo, et al.
Pubblicazione: (2025)
di: Lin, Bo, et al.
Pubblicazione: (2025)
Security Weaknesses of Copilot-Generated Code in GitHub Projects: An Empirical Study
di: Fu, Yujia, et al.
Pubblicazione: (2023)
di: Fu, Yujia, et al.
Pubblicazione: (2023)
Teaching an Old LLM Secure Coding: Localized Preference Optimization on Distilled Preferences
di: Hasan, Mohammad Saqib, et al.
Pubblicazione: (2025)
di: Hasan, Mohammad Saqib, et al.
Pubblicazione: (2025)
QASecClaw: A Multi-Agent LLM Approach for False Positive Reduction in Static Application Security Testing
di: Ameen, Mohd Ruhul, et al.
Pubblicazione: (2026)
di: Ameen, Mohd Ruhul, et al.
Pubblicazione: (2026)
WildCode: An Empirical Analysis of Code Generated by ChatGPT
di: Khanmohammadi, Kobra, et al.
Pubblicazione: (2025)
di: Khanmohammadi, Kobra, et al.
Pubblicazione: (2025)
SoK: Analysis of Software Supply Chain Security by Establishing Secure Design Properties
di: Okafor, Chinenye, et al.
Pubblicazione: (2024)
di: Okafor, Chinenye, et al.
Pubblicazione: (2024)
SCAFFOLD-CEGIS: Preventing Latent Security Degradation in LLM-Driven Iterative Code Refinement
di: Chen, Yi, et al.
Pubblicazione: (2026)
di: Chen, Yi, et al.
Pubblicazione: (2026)
Documenti analoghi
-
Code Security Vulnerability Repair Using Reinforcement Learning with Large Language Models
di: Islam, Nafis Tanveer, et al.
Pubblicazione: (2024) -
Causative Insights into Open Source Software Security using Large Language Code Embeddings and Semantic Vulnerability Graph
di: Islam, Nafis Tanveer, et al.
Pubblicazione: (2024) -
Root-Cause-Driven Automated Vulnerability Repair
di: Wang, Hulin, et al.
Pubblicazione: (2026) -
CodableLLM: Automating Decompiled and Source Code Mapping for LLM Dataset Generation
di: Manuel, Dylan, et al.
Pubblicazione: (2025) -
VulInstruct: Teaching LLMs Root-Cause Reasoning for Vulnerability Detection via Security Specifications
di: Zhu, Hao, et al.
Pubblicazione: (2025)