From the 1 of 7 linked papers with an AI index.
7 papers
Emerging Challenges in Threat Modeling for GenAI-Augmented Systems: A View from the Trenches
Nicolás E. DÃaz Ferreyra, Manish Mahesh Kumar, Nohemà Villarreal +3
The paper investigates how existing threat modeling methods cope with security risks introduced by generative AI components in software systems, presenting an exploratory study in…
The Good, the Bad, and the (Un)Usable: A Rapid Literature Review on Privacy as Code
Nicolás E. DÃaz Ferreyra, Sirine Khelifi, Nalin Arachchilage +1
Privacy and security are central to the design of information systems endowed with sound data protection and cyber resilience capabilities. Still, developers often struggle to inco…
Prompting Techniques for Secure Code Generation: A Systematic Investigation
Catherine Tony, Nicolás E. DÃaz Ferreyra, Markus Mutas +2
Large Language Models (LLMs) are gaining momentum in software development with prompt-driven programming enabling developers to create code from natural language (NL) instructions.…
In Specs we Trust? Conformance-Analysis of Implementation to Specifications in Node-RED and Associated Security Risks
Simon Schneider, Komal Kashish, Katja Tuma +1
Low-code development frameworks for IoT platforms offer a simple drag-and-drop mechanism to create applications for the billions of existing IoT devices without the need for extens…
A Taxonomy of Functional Security Features and How They Can Be Located
Kevin Hermann, Simon Schneider, Catherine Tony +6
Security must be considered in almost every software system. Unfortunately, selecting and implementing security features remains challenging due to the variety of security threats…
Comparison of Static Analysis Architecture Recovery Tools for Microservice Applications
Simon Schneider, Alexander Bakhtin, Xiaozhou Li +5
Architecture recovery tools help software engineers obtain an overview of the structure of their software systems during all phases of the software development life cycle. This is…