Are We Learning the Right Features? A Framework for Evaluating DL-Based Software Vulnerability Detection Solutions
Fuente:
arXiv
Saved in:
| Main Authors: | Das, Satyaki, Fabiha, Syeda Tasnim, Shafiq, Saad, Medvidovic, Nenad |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Toward Improved Deep Learning-based Vulnerability Detection
by: Sejfia, Adriana, et al.
Published: (2024)
by: Sejfia, Adriana, et al.
Published: (2024)
Virtualization-based Penetration Testing Study for Detecting Accessibility Abuse Vulnerabilities in Banking Apps in East and Southeast Asia
by: Minn, Wei, et al.
Published: (2026)
by: Minn, Wei, et al.
Published: (2026)
ZTD$_{JAVA}$: Mitigating Software Supply Chain Vulnerabilities via Zero-Trust Dependencies
by: Amusuo, Paschal C., et al.
Published: (2023)
by: Amusuo, Paschal C., et al.
Published: (2023)
Identifying Appropriately-Sized Services with Deep Reinforcement Learning
by: Fabiha, Syeda Tasnim, et al.
Published: (2025)
by: Fabiha, Syeda Tasnim, et al.
Published: (2025)
Same Same But Different: Preventing Refactoring Attacks on Software Plagiarism Detection
by: Maisch, Robin, et al.
Published: (2025)
by: Maisch, Robin, et al.
Published: (2025)
EXHIB: A Benchmark for Realistic and Diverse Evaluation of Function Similarity in the Wild
by: Fan, Yiming, et al.
Published: (2026)
by: Fan, Yiming, et al.
Published: (2026)
SCARA: A Semantics-Constrained Autonomous Remediation Agent for Opaque Industrial Software Vulnerabilities
by: Ning, Bowei, et al.
Published: (2026)
by: Ning, Bowei, et al.
Published: (2026)
Securing the Dark Matter: A Semantic-Enhanced Neuro-Symbolic Framework for Supply Chain Analysis of Opaque Industrial Software
by: Ning, Bowei, et al.
Published: (2026)
by: Ning, Bowei, et al.
Published: (2026)
A Validated Prompt Bank for Malicious Code Generation: Separating Executable Weapons from Security Knowledge in 1,554 Consensus-Labeled Prompts
by: Young, Richard J., et al.
Published: (2026)
by: Young, Richard J., et al.
Published: (2026)
Context Kubernetes: Declarative Orchestration of Enterprise Knowledge for Agentic AI Systems
by: Mouzouni, Charafeddine
Published: (2026)
by: Mouzouni, Charafeddine
Published: (2026)
Benchmarking Autonomous Agents against Temporal, Spatial, and Semantic Evasions
by: Ma, Jianan, et al.
Published: (2026)
by: Ma, Jianan, et al.
Published: (2026)
Can Graph-Based Microservice Performance Detection Be Used for Microservice Intrusion Detection?
by: Ma, Yunjian
Published: (2026)
by: Ma, Yunjian
Published: (2026)
Firmware Distribution as Attack Surface: A Security Study of ASIC Cryptocurrency Miners
by: Pouliquen, Pierre, et al.
Published: (2026)
by: Pouliquen, Pierre, et al.
Published: (2026)
Toward Cybersecurity Testing and Monitoring of IoT Ecosystems
by: Taylor, Steve, et al.
Published: (2025)
by: Taylor, Steve, et al.
Published: (2025)
RMCBench: Benchmarking Large Language Models' Resistance to Malicious Code
by: Chen, Jiachi, et al.
Published: (2024)
by: Chen, Jiachi, et al.
Published: (2024)
Towards Socio-Technical Topology-Aware Adaptive Threat Detection in Software Supply Chains
by: Welsh, Thomas, et al.
Published: (2025)
by: Welsh, Thomas, et al.
Published: (2025)
Kettle: Attested builds for verifiable software provenance
by: Asad, Amean, et al.
Published: (2026)
by: Asad, Amean, et al.
Published: (2026)
Quantum-Safe Code Auditing: LLM-Assisted Static Analysis and Quantum-Aware Risk Scoring for Post-Quantum Cryptography Migration
by: Shaw, Animesh
Published: (2026)
by: Shaw, Animesh
Published: (2026)
ModuleGuard:Understanding and Detecting Module Conflicts in Python Ecosystem
by: Zhu, Ruofan, et al.
Published: (2024)
by: Zhu, Ruofan, et al.
Published: (2024)
Crypto-Economic Analysis of Web3 Funding Programs Using the Grant Maturity Framework
by: Biedermann, Ben, et al.
Published: (2025)
by: Biedermann, Ben, et al.
Published: (2025)
Refute-or-Promote: An Adversarial Stage-Gated Multi-Agent Review Methodology for High-Precision LLM-Assisted Defect Discovery
by: Agarwal, Abhinav
Published: (2026)
by: Agarwal, Abhinav
Published: (2026)
Towards an Incident Management Framework in Proprietary Software Ecosystems
by: Costa, L. A., et al.
Published: (2024)
by: Costa, L. A., et al.
Published: (2024)
Bridging the Mobile Trust Gap: A Zero Trust Framework for Consumer-Facing Applications
by: Tabalipa, Alexander
Published: (2025)
by: Tabalipa, Alexander
Published: (2025)
Automating the Detection of Code Vulnerabilities by Analyzing GitHub Issues
by: Cipollone, Daniele, et al.
Published: (2025)
by: Cipollone, Daniele, et al.
Published: (2025)
Unveiling the Vulnerability of Private Fine-Tuning in Split-Based Frameworks for Large Language Models: A Bidirectionally Enhanced Attack
by: Chen, Guanzhong, et al.
Published: (2024)
by: Chen, Guanzhong, et al.
Published: (2024)
Model-Driven Legacy System Modernization at Scale
by: Böhm, Tobias, et al.
Published: (2026)
by: Böhm, Tobias, et al.
Published: (2026)
Advancing DevSecOps in SMEs: Challenges and Best Practices for Secure CI/CD Pipelines
by: Cheenepalli, Jayaprakashreddy, et al.
Published: (2025)
by: Cheenepalli, Jayaprakashreddy, et al.
Published: (2025)
HSM and TPM Failures in Cloud: A Real-World Taxonomy and Emerging Defenses
by: Shaikh, Shams, et al.
Published: (2025)
by: Shaikh, Shams, et al.
Published: (2025)
A Relevance Model for Threat-Centric Ranking of Cybersecurity Vulnerabilities
by: McCoy, Corren, et al.
Published: (2024)
by: McCoy, Corren, et al.
Published: (2024)
KYA: A Framework-Agnostic Trust Layer for Autonomous Systems with Verifiable Provenance and Hierarchical Policy Composition
by: Quadri, Kolawole
Published: (2026)
by: Quadri, Kolawole
Published: (2026)
FAIRSECO: An Extensible Framework for Impact Measurement of Research Software
by: Deekshitha, et al.
Published: (2024)
by: Deekshitha, et al.
Published: (2024)
Predicting known Vulnerabilities from Attack News: A Transformer-Based Approach
by: Othman, Refat, et al.
Published: (2026)
by: Othman, Refat, et al.
Published: (2026)
Constitutional Spec-Driven Development: Enforcing Security by Construction in AI-Assisted Code Generation
by: Marri, Srinivas Rao
Published: (2026)
by: Marri, Srinivas Rao
Published: (2026)
Bounded Autonomy for Enterprise AI: Typed Action Contracts and Consumer-Side Execution
by: Sohail, Sarmad, et al.
Published: (2026)
by: Sohail, Sarmad, et al.
Published: (2026)
Design Patterns for Multilevel Modeling and Simulation
by: Serena, Luca, et al.
Published: (2024)
by: Serena, Luca, et al.
Published: (2024)
RSMM: A Framework to Assess Maturity of Research Software Project
by: Deekshitha, et al.
Published: (2024)
by: Deekshitha, et al.
Published: (2024)
ADMIn: Attacks on Dataset, Model and Input. A Threat Model for AI Based Software
by: Kumar, Vimal, et al.
Published: (2024)
by: Kumar, Vimal, et al.
Published: (2024)
VehiclePassport: A GAIA-X-Aligned, Blockchain-Anchored Privacy-Preserving, Zero-Knowledge Digital Passport for Smart Vehicles
by: Kaushal, Pradyumna
Published: (2025)
by: Kaushal, Pradyumna
Published: (2025)
Small is Beautiful: A Practical and Efficient Log Parsing Framework
by: Wang, Minxing, et al.
Published: (2026)
by: Wang, Minxing, et al.
Published: (2026)
Dynamic Vulnerability Patching for Heterogeneous Embedded Systems Using Stack Frame Reconstruction
by: Zhou, Ming, et al.
Published: (2025)
by: Zhou, Ming, et al.
Published: (2025)
Similar Items
-
Toward Improved Deep Learning-based Vulnerability Detection
by: Sejfia, Adriana, et al.
Published: (2024) -
Virtualization-based Penetration Testing Study for Detecting Accessibility Abuse Vulnerabilities in Banking Apps in East and Southeast Asia
by: Minn, Wei, et al.
Published: (2026) -
ZTD$_{JAVA}$: Mitigating Software Supply Chain Vulnerabilities via Zero-Trust Dependencies
by: Amusuo, Paschal C., et al.
Published: (2023) -
Identifying Appropriately-Sized Services with Deep Reinforcement Learning
by: Fabiha, Syeda Tasnim, et al.
Published: (2025) -
Same Same But Different: Preventing Refactoring Attacks on Software Plagiarism Detection
by: Maisch, Robin, et al.
Published: (2025)