6 papers
SoK: AI Secure Code Generation: Progress, Pitfalls, and Paths Forward
Rupam Patir, Keyan Guo, Haipeng Cai +1
The increasing use of AI systems for code generation raises a central security question: what can today's models and coding agents actually do to produce secure code, where do they…
DualGauge: Automated Joint Security-Functionality Benchmarking of Specification-Only Code Generation by LLMs and Coding Agents
Rupam Patir, Keyan Guo, Suvadra Barua +5
Large language models (LLMs) and LLM-based coding agents are now used to generate code from natural-language specifications, yet ensuring such code is both functionally correct and…
Semantics Over Syntax: Uncovering Pre-Authentication 5G Baseband Vulnerabilities
Qiqing Huang, Xingyu Wang, Wanda Guo +2
Modern 5G user equipment (UE) processes Radio Resource Control (RRC) configuration messages during early control-plane exchanges, before authentication and integrity protection are…
Fortifying LLM-Based Code Generation with Graph-Based Reasoning on Secure Coding Practices
Rupam Patir, Keyan Guo, Haipeng Cai +1
The code generation capabilities of Large Language Models (LLMs) have transformed the field of software development. However, this advancement also presents significant security ch…
APPATCH: Automated Adaptive Prompting Large Language Models for Real-World Software Vulnerability Patching
Yu Nong, Haoran Yang, Long Cheng +2
Timely and effective vulnerability patching is essential for cybersecurity defense, for which various approaches have been proposed yet still struggle to generate valid and correct…
AI-Cybersecurity Education Through Designing AI-based Cyberharassment Detection Lab
Ebuka Okpala, Nishant Vishwamitra, Keyan Guo +7
Cyberharassment is a critical, socially relevant cybersecurity problem because of the adverse effects it can have on targeted groups or individuals. While progress has been made in…