GenSIaC: Toward Security-Aware Infrastructure-as-Code Generation with Large Language Models
Fuente:
arXiv
Guardado en:
| Autores principales: | Li, Yikun, Grella, Matteo, Nahmias, Daniel, Engelberg, Gal, Klein, Dan, Guizzardi, Giancarlo, van Ede, Thijs, Continella, Andrea |
|---|---|
| Formato: | Preprint |
| Publicado: |
2025
|
| Materias: | |
| Acceso en línea: | |
| Etiquetas: |
Agregar Etiqueta
Sin Etiquetas, Sea el primero en etiquetar este registro!
|
Ejemplares similares
An ontological lens on attack trees: Toward adequacy and interoperability
por: Oliveira, Ítalo, et al.
Publicado: (2025)
por: Oliveira, Ítalo, et al.
Publicado: (2025)
Prompted Contextual Vectors for Spear-Phishing Detection
por: Nahmias, Daniel, et al.
Publicado: (2024)
por: Nahmias, Daniel, et al.
Publicado: (2024)
Exploring Security Practices in Infrastructure as Code: An Empirical Study
por: Verdet, Alexandre, et al.
Publicado: (2023)
por: Verdet, Alexandre, et al.
Publicado: (2023)
How Secure is Secure Code Generation? Adversarial Prompts Put LLM Defenses to the Test
por: Tessa, Melissa, et al.
Publicado: (2026)
por: Tessa, Melissa, et al.
Publicado: (2026)
LLM Security Guard for Code
por: Kavian, Arya, et al.
Publicado: (2024)
por: Kavian, Arya, et al.
Publicado: (2024)
Establishing Provenance Before Coding: Traditional and Next-Gen Software Signing
por: Schorlemmer, Taylor R., et al.
Publicado: (2024)
por: Schorlemmer, Taylor R., et al.
Publicado: (2024)
Security Incentivization: An Empirical Study of how Micropayments Impact Code Security
por: Rass, Stefan, et al.
Publicado: (2026)
por: Rass, Stefan, et al.
Publicado: (2026)
How to Compare the Security of Code Written by Humans to LLM-generated Code
por: Balebako, Rebecca, et al.
Publicado: (2026)
por: Balebako, Rebecca, et al.
Publicado: (2026)
SecCodePRM: A Process Reward Model for Code Security
por: Yu, Weichen, et al.
Publicado: (2026)
por: Yu, Weichen, et al.
Publicado: (2026)
Building Privacy-and-Security-Focused Federated Learning Infrastructure for Global Multi-Centre Healthcare Research
por: Zhang, Fan, et al.
Publicado: (2026)
por: Zhang, Fan, et al.
Publicado: (2026)
Secure Coding with AI -- From Detection to Repair
por: Belozerov, Vladislav, et al.
Publicado: (2025)
por: Belozerov, Vladislav, et al.
Publicado: (2025)
Towards Secure Logging: Characterizing and Benchmarking Logging Code Security Issues with LLMs
por: Yuan, He Yang, et al.
Publicado: (2026)
por: Yuan, He Yang, et al.
Publicado: (2026)
MOSAIC-Bench: Measuring Compositional Vulnerability Induction in Coding Agents
por: Steinberg, Jonathan, et al.
Publicado: (2026)
por: Steinberg, Jonathan, et al.
Publicado: (2026)
Software Security in Software-Defined Networking: A Systematic Literature Review
por: Diouf, Moustapha Awwalou, et al.
Publicado: (2025)
por: Diouf, Moustapha Awwalou, et al.
Publicado: (2025)
Give LLMs a Security Course: Securing Retrieval-Augmented Code Generation via Knowledge Injection
por: Lin, Bo, et al.
Publicado: (2025)
por: Lin, Bo, et al.
Publicado: (2025)
Security of Language Models for Code: A Systematic Literature Review
por: Chen, Yuchen, et al.
Publicado: (2024)
por: Chen, Yuchen, et al.
Publicado: (2024)
An Empirical Security Evaluation of LLM-Generated Cryptographic Rust Code
por: Elsayed, Mohamed, et al.
Publicado: (2026)
por: Elsayed, Mohamed, et al.
Publicado: (2026)
Exploring the Security Threats of Retriever Backdoors in Retrieval-Augmented Code Generation
por: Li, Tian, et al.
Publicado: (2025)
por: Li, Tian, et al.
Publicado: (2025)
Towards Secure and Explainable Smart Contract Generation with Security-Aware Group Relative Policy Optimization
por: Yu, Lei, et al.
Publicado: (2025)
por: Yu, Lei, et al.
Publicado: (2025)
Towards Trust Proof for Secure Confidential Virtual Machines
por: Mao, Jingkai, et al.
Publicado: (2024)
por: Mao, Jingkai, et al.
Publicado: (2024)
Does Teaming-Up LLMs Improve Secure Code Generation? A Comprehensive Evaluation with Multi-LLMSecCodeEval
por: Sabir, Bushra, et al.
Publicado: (2026)
por: Sabir, Bushra, et al.
Publicado: (2026)
Security Evaluation of Android apps in budget African Mobile Devices
por: Diallo, Alioune, et al.
Publicado: (2025)
por: Diallo, Alioune, et al.
Publicado: (2025)
Exploring the Security Threats of Knowledge Base Poisoning in Retrieval-Augmented Code Generation
por: Lin, Bo, et al.
Publicado: (2025)
por: Lin, Bo, et al.
Publicado: (2025)
Security Weaknesses of Copilot-Generated Code in GitHub Projects: An Empirical Study
por: Fu, Yujia, et al.
Publicado: (2023)
por: Fu, Yujia, et al.
Publicado: (2023)
Teaching an Old LLM Secure Coding: Localized Preference Optimization on Distilled Preferences
por: Hasan, Mohammad Saqib, et al.
Publicado: (2025)
por: Hasan, Mohammad Saqib, et al.
Publicado: (2025)
Assessing Vulnerability in Smart Contracts: The Role of Code Complexity Metrics in Security Analysis
por: Tehrani, Masoud Jamshidiyan
Publicado: (2024)
por: Tehrani, Masoud Jamshidiyan
Publicado: (2024)
Improving Smart Contract Security with Contrastive Learning-based Vulnerability Detection
por: Chen, Yizhou, et al.
Publicado: (2024)
por: Chen, Yizhou, et al.
Publicado: (2024)
FLAMES: Fine-tuning LLMs to Synthesize Invariants for Smart Contract Security
por: Eshghie, Mojtaba, et al.
Publicado: (2025)
por: Eshghie, Mojtaba, et al.
Publicado: (2025)
Towards Understanding and Applying Security Assurance Cases for Automotive Systems
por: Mohamad, Mazen
Publicado: (2024)
por: Mohamad, Mazen
Publicado: (2024)
SCAFFOLD-CEGIS: Preventing Latent Security Degradation in LLM-Driven Iterative Code Refinement
por: Chen, Yi, et al.
Publicado: (2026)
por: Chen, Yi, et al.
Publicado: (2026)
Large Language Models for Secure Code Assessment: A Multi-Language Empirical Study
por: Dozono, Kohei, et al.
Publicado: (2024)
por: Dozono, Kohei, et al.
Publicado: (2024)
Models Are Codes: Towards Measuring Malicious Code Poisoning Attacks on Pre-trained Model Hubs
por: Zhao, Jian, et al.
Publicado: (2024)
por: Zhao, Jian, et al.
Publicado: (2024)
GraphQLer: Enhancing GraphQL Security with Context-Aware API Testing
por: Tsai, Omar, et al.
Publicado: (2025)
por: Tsai, Omar, et al.
Publicado: (2025)
Many Tools, Few Exploitable Vulnerabilities: A Survey of 246 Static Code Analyzers for Security
por: Hermann, Kevin, et al.
Publicado: (2026)
por: Hermann, Kevin, et al.
Publicado: (2026)
RealSec-bench: A Benchmark for Evaluating Secure Code Generation in Real-World Repositories
por: Wang, Yanlin, et al.
Publicado: (2026)
por: Wang, Yanlin, et al.
Publicado: (2026)
Can I Check What I Designed? Mapping Security Design DSLs to Code Analyzers
por: Peldszus, Sven, et al.
Publicado: (2026)
por: Peldszus, Sven, et al.
Publicado: (2026)
Architecture-Derived CBOMs for Cryptographic Migration: A Security-Aware Architecture Tradeoff Method
por: Hirsch, Eduard, et al.
Publicado: (2026)
por: Hirsch, Eduard, et al.
Publicado: (2026)
Transferable Backdoor Attacks for Code Models via Sharpness-Aware Adversarial Perturbation
por: Chang, Shuyu, et al.
Publicado: (2026)
por: Chang, Shuyu, et al.
Publicado: (2026)
Beyond Function-Level Analysis: Context-Aware Reasoning for Inter-Procedural Vulnerability Detection
por: Li, Yikun, et al.
Publicado: (2026)
por: Li, Yikun, et al.
Publicado: (2026)
Toward Automated Security Risk Detection in Large Software Using Call Graph Analysis
por: Pecka, Nicholas, et al.
Publicado: (2025)
por: Pecka, Nicholas, et al.
Publicado: (2025)
Ejemplares similares
-
An ontological lens on attack trees: Toward adequacy and interoperability
por: Oliveira, Ítalo, et al.
Publicado: (2025) -
Prompted Contextual Vectors for Spear-Phishing Detection
por: Nahmias, Daniel, et al.
Publicado: (2024) -
Exploring Security Practices in Infrastructure as Code: An Empirical Study
por: Verdet, Alexandre, et al.
Publicado: (2023) -
How Secure is Secure Code Generation? Adversarial Prompts Put LLM Defenses to the Test
por: Tessa, Melissa, et al.
Publicado: (2026) -
LLM Security Guard for Code
por: Kavian, Arya, et al.
Publicado: (2024)