Fetching the paper…
Reading the bibliography…
Previous learning-based vulnerability detection methods relied on either medium-sized pre-trained models or smaller neural networks from scratch.
Symantec global internet security threat report–trends for july-december 07
Dean Turner, Marc Fossi, Eric Johnson, Trevor Mack, Joseph Blackbird, Stephen Entwisle, Mo King Low, David McKinney, and Candid Wueest · 2008
Earlier work this paper cites.
Practitioners’ expectations on automated fault localization
Pavneet Singh Kochhar, Xin Xia, David Lo, and Shanping Li · 2016
Earlier work this paper cites.
Devign: Effective vulnerability identification by learning comprehensive program semantics via graph neural networks
Yaqin Zhou, Shangqing Liu, Jingkai Siow, Xiaoning Du, and Yang Liu · 2019
Earlier work this paper cites.
Codebert: A pre-trained model for programming and natural languages
Zhangyin Feng, Daya Guo, Duyu Tang, Nan Duan, Xiaocheng Feng, Ming Gong, Linjun Shou, Bing Qin, Ting Liu, Daxin Jiang, and Ming Zhou · 2020
Earlier work this paper cites.
Sentiment analysis for software engineering: How far can pre-trained transformer models go?
Ting Zhang, Bowen Xu, Ferdian Thung, Stefanus Agus Haryono, David Lo, and Lingxiao Jiang · 2020
Earlier work this paper cites.
Language models are few-shot learners
Tom Brown, Benjamin Mann, Nick Ryder, Melanie Subbiah, Jared D Kaplan, Prafulla Dhariwal, Arvind Neelakantan, Pranav Shyam, Girish Sastry, Amanda Askell, et al · 2020
Earlier work this paper cites.
Ac/c++ code vulnerability dataset with code changes and cve summaries
Jiahao Fan, Yi Li, Shaohua Wang, and Tien N Nguyen · 2020
Earlier work this paper cites.
Assessing generalizability of codebert
Xin Zhou, DongGyun Han, and David Lo · 2021
Earlier work this paper cites.
https://www.bankinfosecurity.com/ms-exchange-flaw-causes-spike-intrdownloader-gen-trojans-a-16236 , 2022
Microsoft Exchange Flaw: Attacks Surge After Code Published · 2022
Earlier work this paper cites.
Vulberta: Simplified source code pre-training for vulnerability detection
Hazim Hanif and Sergio Maffeis · 2022
Earlier work this paper cites.
Linevul: a transformer-based line-level vulnerability prediction
Michael Fu and Chakkrit Tantithamthavorn · 2022
Earlier work this paper cites.
Regvd: Revisiting graph neural networks for vulnerability detection
Van-Anh Nguyen, Dai Quoc Nguyen, Van Nguyen, Trung Le, Quan Hung Tran, and Dinh Phung · 2022
Earlier work this paper cites.
Lora: Low-rank adaptation of large language models
Edward J. Hu, Yelong Shen, Phillip Wallis, Zeyuan Allen-Zhu, Yuanzhi Li, Shean Wang, and Weizhu Chen · 2022
Cited alongside, same era.
https://cwe.mitre.org/top25/archive/2022/2022_cwe_top25.html , 2022
2022
Cited alongside, same era.
Utango: untangling commits with context-aware, graph-based, code change clustering learning model
Yi Li, Shaohua Wang, and Tien N Nguyen · 2022
Cited alongside, same era.
Natural attack for pre-trained models of code
Zhou Yang, Jieke Shi, Junda He, and David Lo · 2022
Cited alongside, same era.
Keep the conversation going: Fixing 162 out of 337 bugs for $0.42 each using chatgpt
Chunqiu Steven Xia and Lingming Zhang · 2023
Cited alongside, same era.
https://openai.com/pricing , 2023
2023
Later among the works it cites.
An empirical study of deep learning models for vulnerability detection
Benjamin Steenhoek, Md Mahbubur Rahman, Richard Jiles, and Wei Le · 2023
Later among the works it cites.
Burpgpt - chatgpt powered automated vulnerability detection tool
Alexandre Teyar · 2023
Later among the works it cites.
vuln_gpt debuts as ai-powered approach to find and remediate software vulnerabilities
Vicarius · 2023
Later among the works it cites.
Prompt-enhanced software vulnerability detection using chatgpt
Chenyuan Zhang, Hao Liu, Jiutian Zeng, Kejing Yang, Yuhong Li, and Hui Li · 2023
Later among the works it cites.
Pentagon testing generative AI in ‘global information dominance’ experiments
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Ting Zhang, Ivana Clairine Irsan, Ferdian Thung, and David Lo · 2023
Cited alongside, same era.
Revisiting sentiment analysis for software engineering in the era of large language models
Ting Zhang, Ivana Clairine Irsan, Ferdian Thung, and David Lo · 2023
Cited alongside, same era.
Exploring parameter-efficient fine-tuning techniques for code generation with large language models
Martin Weyssow, Xin Zhou, Kisub Kim, David Lo, and Houari Sahraoui · 2023
Cited alongside, same era.
Patchzero: Zero-shot automatic patch correctness assessment
Xin Zhou, Bowen Xu, Kisub Kim, DongGyun Han, Thanh Le-Cong, Junda He, Bach Le, and David Lo · 2023
Cited alongside, same era.
Starcoder: may the source be with you!
Raymond Li, Loubna Ben Allal, Yangtian Zi, Niklas Muennighoff, Denis Kocetkov, Chenghao Mou, Marc Marone, Christopher Akiki, Jia Li, Jenny Chim, et al · 2023
Cited alongside, same era.
Fine-grained commit-level vulnerability type prediction by cwe tree structure
Shengyi Pan, Lingfeng Bao, Xin Xia, David Lo, and Shanping Li · 2023
Cited alongside, same era.
Burp suite - application security testing software
PortSwigger
Cited in the paper.
Jon Harper · 2023
Later among the works it cites.
Samsung Bans Use of Generative AI Tools on Company-Owned Devices Over Security Concerns
Kyle Chua · 2023
Later among the works it cites.
Apple Bans Internal Use of ChatGPT and GitHub Copilot Over Fear of Leaks
Kyle Chua · 2023
Later among the works it cites.
Llama 2: Open foundation and fine-tuned chat models
Hugo Touvron, Louis Martin, Kevin Stone, Peter Albert, Amjad Almahairi, Yasmine Babaei, Nikolay Bashlykov, Soumya Batra, Prajjwal Bhargava, Shruti Bhosale, et al · 2023
Later among the works it cites.
The devil is in the tails: How long-tailed code distributions impact large language models
Xin Zhou, Kisub Kim, Bowen Xu, Jiakun Liu, DongGyun Han, and David Lo · 2023
Later among the works it cites.
Trustworthy and synergistic artificial intelligence for software engineering: Vision and roadmaps
David Lo · 2023
Later among the works it cites.