works on

From the 1 of 7 linked papers with an AI index.

activity
20242026
collaborators

7 papers

cs.SE2026

Emerging Challenges in Threat Modeling for GenAI-Augmented Systems: A View from the Trenches

Nicolás E. Díaz Ferreyra, Manish Mahesh Kumar, Nohemí Villarreal +3

The paper investigates how existing threat modeling methods cope with security risks introduced by generative AI components in software systems, presenting an exploratory study in…

cs.SE2025

The Good, the Bad, and the (Un)Usable: A Rapid Literature Review on Privacy as Code

Nicolás E. Díaz Ferreyra, Sirine Khelifi, Nalin Arachchilage +1

Privacy and security are central to the design of information systems endowed with sound data protection and cyber resilience capabilities. Still, developers often struggle to inco…

cs.SE2025

Prompting Techniques for Secure Code Generation: A Systematic Investigation

Catherine Tony, Nicolás E. Díaz Ferreyra, Markus Mutas +2

Large Language Models (LLMs) are gaining momentum in software development with prompt-driven programming enabling developers to create code from natural language (NL) instructions.…

cs.CR2025

In Specs we Trust? Conformance-Analysis of Implementation to Specifications in Node-RED and Associated Security Risks

Simon Schneider, Komal Kashish, Katja Tuma +1

Low-code development frameworks for IoT platforms offer a simple drag-and-drop mechanism to create applications for the billions of existing IoT devices without the need for extens…

cs.CR2025

A Taxonomy of Functional Security Features and How They Can Be Located

Kevin Hermann, Simon Schneider, Catherine Tony +6

Security must be considered in almost every software system. Unfortunately, selecting and implementing security features remains challenging due to the variety of security threats…

cs.SE2024

Comparison of Static Analysis Architecture Recovery Tools for Microservice Applications

Simon Schneider, Alexander Bakhtin, Xiaozhou Li +5

Architecture recovery tools help software engineers obtain an overview of the structure of their software systems during all phases of the software development life cycle. This is…