7 papers
Securing the AI Supply Chain: What Can We Learn From Developer-Reported Security Issues and Solutions of AI Projects?
The Anh Nguyen, Triet Huynh Minh Le, M. Ali Babar
The rapid growth of Artificial Intelligence (AI) models and applications has led to an increasingly complex security landscape. Developers of AI projects must contend not only with…
Software Vulnerability Management in the Era of Artificial Intelligence: An Industry Perspective
M. Mehdi Kholoosi, Triet Huynh Minh Le, M. Ali Babar
Artificial Intelligence (AI) has revolutionized software development, particularly by automating repetitive tasks and improving developer productivity. While these advancements are…
VulGuard: An Unified Tool for Evaluating Just-In-Time Vulnerability Prediction Models
Duong Nguyen, Manh Tran-Duc, Thanh Le-Cong +3
We present VulGuard, an automated tool designed to streamline the extraction, processing, and analysis of commits from GitHub repositories for Just-In-Time vulnerability prediction…
Toward Realistic Evaluations of Just-In-Time Vulnerability Prediction
Duong Nguyen, Thanh Le-Cong, Triet Huynh Minh Le +2
Modern software systems are increasingly complex, presenting significant challenges in quality assurance. Just-in-time vulnerability prediction (JIT-VP) is a proactive approach to…
LLMSecConfig: An LLM-Based Approach for Fixing Software Container Misconfigurations
Ziyang Ye, Triet Huynh Minh Le, M. Ali Babar
Security misconfigurations in Container Orchestrators (COs) can pose serious threats to software systems. While Static Analysis Tools (SATs) can effectively detect these security v…
Multivariate Time Series Anomaly Detection by Capturing Coarse-Grained Intra- and Inter-Variate Dependencies
Yongzheng Xie, Hongyu Zhang, Muhammad Ali Babar
Multivariate time series anomaly detection is essential for failure management in web application operations, as it directly influences the effectiveness and timeliness of implemen…