[HTML][HTML] A survey on large language model (llm) security and privacy: The good, the bad, and the ugly

Y Yao, J Duan, K Xu, Y Cai, Z Sun, Y Zhang - High-Confidence Computing, 2024 - Elsevier
Abstract Large Language Models (LLMs), such as ChatGPT and Bard, have revolutionized
natural language understanding and generation. They possess deep language …

Large language model for vulnerability detection and repair: Literature review and the road ahead

X Zhou, S Cao, X Sun, D Lo - ACM Transactions on Software …, 2024 - dl.acm.org
The significant advancements in Large Language Models (LLMs) have resulted in their
widespread adoption across various tasks within Software Engineering (SE), including …

Multitask-based evaluation of open-source llm on software vulnerability

X Yin, C Ni, S Wang - IEEE Transactions on Software …, 2024 - ieeexplore.ieee.org
This paper proposes a pipeline for quantitatively evaluating interactive Large Language
Models (LLMs) using publicly available datasets. We carry out an extensive technical …

[HTML][HTML] Enhancing software code vulnerability detection using gpt-4o and claude-3.5 sonnet: A study on prompt engineering techniques

J Bae, S Kwon, S Myeong - Electronics, 2024 - mdpi.com
This study investigates the efficacy of advanced large language models, specifically GPT-4o,
Claude-3.5 Sonnet, and GPT-3.5 Turbo, in detecting software vulnerabilities. Our experiment …

Demystifying faulty code: Step-by-step reasoning for explainable fault localization

R Widyasari, JW Ang, TG Nguyen… - … on Software Analysis …, 2024 - ieeexplore.ieee.org
Fault localization is a critical process that involves identifying specific program elements
responsible for program failures. Manually pinpointing these elements, such as classes …

Vulnerabilities and Security Patches Detection in OSS: A Survey

R Lin, Y Fu, W Yi, J Yang, J Cao, Z Dong, F **e… - ACM Computing …, 2024 - dl.acm.org
Over the past decade, Open Source Software (OSS) has experienced rapid growth and
widespread adoption, attributed to its openness and editability. However, this expansion has …

Autoattacker: A large language model guided system to implement automatic cyber-attacks

J Xu, JW Stokes, G McDonald, X Bai, D Marshall… - arxiv preprint arxiv …, 2024 - arxiv.org
Large language models (LLMs) have demonstrated impressive results on natural language
tasks, and security researchers are beginning to employ them in both offensive and …

Combining Fine-Tuning and LLM-based Agents for Intuitive Smart Contract Auditing with Justifications

W Ma, D Wu, Y Sun, T Wang, S Liu, J Zhang… - arxiv preprint arxiv …, 2024 - arxiv.org
Smart contracts are decentralized applications built atop blockchains like Ethereum. Recent
research has shown that large language models (LLMs) have potential in auditing smart …

On the reliability and explainability of language models for program generation

Y Liu, C Tantithamthavorn, Y Liu, L Li - ACM Transactions on Software …, 2024 - dl.acm.org
Recent studies have adopted pre-trained language models, such as CodeT5 and CodeGPT,
for automated program generation tasks like code generation, repair, and translation …

Generative AI in cyber security of cyber physical systems: Benefits and threats

HS Mavikumbure, V Cobilean… - … on Human System …, 2024 - ieeexplore.ieee.org
The advancements in Cyber-Physical Systems (CPSs) have also increased their
vulnerability to various cyber-attacks. Therefore, it is crucial to develop strong cybersecurity …