Security smells in infrastructure as code: a taxonomy update beyond the seven sins
Fuente:
arXiv
Saved in:
| Main Authors: | War, Aicha, Nikiema, Serge L. B., Samhi, Jordan, Klein, Jacques, Bissyande, Tegawende F. |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Detection of security smells in IaC scripts through semantics-aware code and language processing
by: War, Aicha, et al.
Published: (2025)
by: War, Aicha, et al.
Published: (2025)
How Secure is Secure Code Generation? Adversarial Prompts Put LLM Defenses to the Test
by: Tessa, Melissa, et al.
Published: (2026)
by: Tessa, Melissa, et al.
Published: (2026)
Evaluating Large Language Models in detecting Secrets in Android Apps
by: Alecci, Marco, et al.
Published: (2025)
by: Alecci, Marco, et al.
Published: (2025)
Security Evaluation of Android apps in budget African Mobile Devices
by: Diallo, Alioune, et al.
Published: (2025)
by: Diallo, Alioune, et al.
Published: (2025)
Software Security in Software-Defined Networking: A Systematic Literature Review
by: Diouf, Moustapha Awwalou, et al.
Published: (2025)
by: Diouf, Moustapha Awwalou, et al.
Published: (2025)
MalLoc: Toward Fine-grained Android Malicious Payload Localization via LLMs
by: Sun, Tiezhu, et al.
Published: (2025)
by: Sun, Tiezhu, et al.
Published: (2025)
Security Assessment of Mobile Banking Apps in West African Economic and Monetary Union
by: Diallo, Alioune, et al.
Published: (2024)
by: Diallo, Alioune, et al.
Published: (2024)
(In)Security of Mobile Apps in Developing Countries: A Systematic Literature Review
by: Diallo, Alioune, et al.
Published: (2024)
by: Diallo, Alioune, et al.
Published: (2024)
The Code Barrier: What LLMs Actually Understand?
by: Nikiema, Serge Lionel, et al.
Published: (2025)
by: Nikiema, Serge Lionel, et al.
Published: (2025)
AndroLibZoo: A Reliable Dataset of Libraries Based on Software Dependency Analysis
by: Samhi, Jordan, et al.
Published: (2023)
by: Samhi, Jordan, et al.
Published: (2023)
DetectBERT: Towards Full App-Level Representation Learning to Detect Android Malware
by: Sun, Tiezhu, et al.
Published: (2024)
by: Sun, Tiezhu, et al.
Published: (2024)
Call Graph Soundness in Android Static Analysis
by: Samhi, Jordan, et al.
Published: (2024)
by: Samhi, Jordan, et al.
Published: (2024)
Programming Language Confusion: When Code LLMs Can't Keep their Languages Straight
by: Moumoula, Micheline Bénédicte, et al.
Published: (2025)
by: Moumoula, Micheline Bénédicte, et al.
Published: (2025)
DexRay: A Simple, yet Effective Deep Learning Approach to Android Malware Detection based on Image Representation of Bytecode
by: Daoudi, Nadia, et al.
Published: (2021)
by: Daoudi, Nadia, et al.
Published: (2021)
Learned or Memorized ? Quantifying Memorization Advantage in Code LLMs
by: Euraste, Djiré Albérick, et al.
Published: (2026)
by: Euraste, Djiré Albérick, et al.
Published: (2026)
Test smells in LLM-Generated Unit Tests
by: Ouédraogo, Wendkûuni C., et al.
Published: (2024)
by: Ouédraogo, Wendkûuni C., et al.
Published: (2024)
GenSIaC: Toward Security-Aware Infrastructure-as-Code Generation with Large Language Models
by: Li, Yikun, et al.
Published: (2025)
by: Li, Yikun, et al.
Published: (2025)
Beyond Language Barriers: Multi-Agent Coordination for Multi-Language Code Generation
by: Moumoula, Micheline Bénédicte, et al.
Published: (2025)
by: Moumoula, Micheline Bénédicte, et al.
Published: (2025)
Security study based on the Chatgptplugin system: ldentifying Security Vulnerabilities
by: Ren, Ruomai
Published: (2025)
by: Ren, Ruomai
Published: (2025)
Leveraging Security Observability to Strengthen Security of Digital Ecosystem Architecture
by: Ramachandran, Renjith
Published: (2024)
by: Ramachandran, Renjith
Published: (2024)
Security Incentivization: An Empirical Study of how Micropayments Impact Code Security
by: Rass, Stefan, et al.
Published: (2026)
by: Rass, Stefan, et al.
Published: (2026)
Boosting Open-Source LLMs for Program Repair via Reasoning Transfer and LLM-Guided Reinforcement Learning
by: Tang, Xunzhu, et al.
Published: (2025)
by: Tang, Xunzhu, et al.
Published: (2025)
SoK: Analysis of Software Supply Chain Security by Establishing Secure Design Properties
by: Okafor, Chinenye, et al.
Published: (2024)
by: Okafor, Chinenye, et al.
Published: (2024)
SIEVE: Towards Verifiable Certification for Code-datasets
by: Mbodji, Fatou Ndiaye, et al.
Published: (2025)
by: Mbodji, Fatou Ndiaye, et al.
Published: (2025)
Numeric Truncation Security Predicate
by: Mezhuev, Timofey, et al.
Published: (2023)
by: Mezhuev, Timofey, et al.
Published: (2023)
LLM Security Guard for Code
by: Kavian, Arya, et al.
Published: (2024)
by: Kavian, Arya, et al.
Published: (2024)
An Introduction to Adaptive Software Security
by: Nia, Mehran Alidoost
Published: (2023)
by: Nia, Mehran Alidoost
Published: (2023)
Securing Tomorrow's Smart Cities: Investigating Software Security in Internet of Vehicles and Deep Learning Technologies
by: Jain, Ridhi, et al.
Published: (2024)
by: Jain, Ridhi, et al.
Published: (2024)
Give LLMs a Security Course: Securing Retrieval-Augmented Code Generation via Knowledge Injection
by: Lin, Bo, et al.
Published: (2025)
by: Lin, Bo, et al.
Published: (2025)
"You still have to study" -- On the Security of LLM generated code
by: Goetz, Stefan, et al.
Published: (2024)
by: Goetz, Stefan, et al.
Published: (2024)
An Empirical Study on the Security Vulnerabilities of GPTs
by: Wu, Tong, et al.
Published: (2025)
by: Wu, Tong, et al.
Published: (2025)
120 Domain-Specific Languages for Security
by: Krausz, Markus, et al.
Published: (2024)
by: Krausz, Markus, et al.
Published: (2024)
An Exploratory Study on the Engineering of Security Features
by: Hermann, Kevin, et al.
Published: (2025)
by: Hermann, Kevin, et al.
Published: (2025)
LLMs for Cyber Security: New Opportunities
by: Divakaran, Dinil Mon, et al.
Published: (2024)
by: Divakaran, Dinil Mon, et al.
Published: (2024)
A User-centered Security Evaluation of Copilot
by: Asare, Owura, et al.
Published: (2023)
by: Asare, Owura, et al.
Published: (2023)
Operationalizing Research Software for Supply Chain Security
by: Kalu, Kelechi G., et al.
Published: (2026)
by: Kalu, Kelechi G., et al.
Published: (2026)
Fixing Security Vulnerabilities with AI in OSS-Fuzz
by: Zhang, Yuntong, et al.
Published: (2024)
by: Zhang, Yuntong, et al.
Published: (2024)
GView: A Versatile Assistant for Security Researchers
by: Zaharia, Raul, et al.
Published: (2024)
by: Zaharia, Raul, et al.
Published: (2024)
Secure Coding with AI -- From Detection to Repair
by: Belozerov, Vladislav, et al.
Published: (2025)
by: Belozerov, Vladislav, et al.
Published: (2025)
Software Supply Chain Security of Web3
by: Monperrus, Martin
Published: (2025)
by: Monperrus, Martin
Published: (2025)
Similar Items
-
Detection of security smells in IaC scripts through semantics-aware code and language processing
by: War, Aicha, et al.
Published: (2025) -
How Secure is Secure Code Generation? Adversarial Prompts Put LLM Defenses to the Test
by: Tessa, Melissa, et al.
Published: (2026) -
Evaluating Large Language Models in detecting Secrets in Android Apps
by: Alecci, Marco, et al.
Published: (2025) -
Security Evaluation of Android apps in budget African Mobile Devices
by: Diallo, Alioune, et al.
Published: (2025) -
Software Security in Software-Defined Networking: A Systematic Literature Review
by: Diouf, Moustapha Awwalou, et al.
Published: (2025)