Fetching the paper…
Reading the bibliography…
Software vulnerabilities continue to be ubiquitous, even in the era of AI-powered code assistants, advanced static analysis tools, and the adoption of extensive testing frameworks.
Yes! high level languages should be used to write systems software
James J. Horning · 1975
Earlier work this paper cites.
Legacy code
C.A.R. Hoare · 2000
Earlier work this paper cites.
Bleu: a method for automatic evaluation of machine translation
Kishore Papineni, Salim Roukos, Todd Ward, and Wei-Jing Zhu · 2002
Earlier work this paper cites.
Basic concepts and taxonomy of dependable and secure computing
A. Avizienis, J.-C. Laprie, B. Randell, and C. Landwehr · 2004
Earlier work this paper cites.
Automatic vulnerability detection using static source code analysis
Alexander Ivanov Sotirov · 2005
Earlier work this paper cites.
Trend analysis of the cve for software vulnerability management
Yung-Yu Chang, Pavol Zavarsky, Ron Ruhl, and Dale Lindskog · 2011
Earlier work this paper cites.
Language choice for safety critical applications
James S. Rogers · 2011
Earlier work this paper cites.
FIE on firmware: Finding vulnerabilities in embedded systems using symbolic execution
Drew Davidson, Benjamin Moench, Thomas Ristenpart, and Somesh Jha · 2013
Earlier work this paper cites.
Path sensitive static analysis of web applications for remote code execution vulnerability detection
Yunhui Zheng and Xiangyu Zhang · 2013
Earlier work this paper cites.
Optimal sanitization synthesis for web application vulnerability repair
Fang Yu, Ching-Yuan Shueh, Chun-Han Lin, Yu-Fang Chen, Bow-Yaw Wang, and Tevfik Bultan · 2016
Earlier work this paper cites.
Understanding the mirai botnet
Manos Antonakakis, Tim April, Michael Bailey, Matt Bernhard, Elie Bursztein, Jaime Cochran, Zakir Durumeric, J. Alex Halderman, Luca Invernizzi, Michalis Kallitsis, Deepak Kumar, Chaz Lever, Zane Ma, Joshua Mason, Damian Menscher, Chad Seaman, Nick Sullivan, Kurt Thomas, and Yi Zhou · 2017
Earlier work this paper cites.
Ashish Vaswani, Noam Shazeer, Niki Parmar, Jakob Uszkoreit, Llion Jones, Aidan N. Gomez, Lukasz Kaiser, and Illia Polosukhin · 2017
Earlier work this paper cites.
Challenges for static analysis of java reflection-literature review and empirical study
Davy Landman, Alexander Serebrenik, and Jurgen J Vinju · 2017
Earlier work this paper cites.
The law and economics of bug bounties, August 2018
Amit Elazari Bar On · 2018
Earlier work this paper cites.
BlackIoT: IoT botnet of high wattage devices can disrupt the power grid
Saleh Soltan, Prateek Mittal, and H. Vincent Poor · 2018
Earlier work this paper cites.
Learning to repair software vulnerabilities with generative adversarial networks
Jacob Harer, Onur Ozdemir, Tomo Lazovich, Christopher Reale, Rebecca Russell, Louis Kim, et al · 2018
Earlier work this paper cites.
Automatic software repair: A bibliography
Martin Monperrus · 2018
Earlier work this paper cites.
Vuldeepecker: A deep learning-based system for vulnerability detection
Zhen Li, Deqing Zou, Shouhuai Xu, Xinyu Ou, Hai Jin, Sujuan Wang, Zhijun Deng, and Yuyi Zhong · 2018
Earlier work this paper cites.
50 ways to leak your data: An exploration of apps’ circumvention of the android permissions system
Joel Reardon, Álvaro Feal, Primal Wijesekera, Amit Elazari Bar On, Narseo Vallina-Rodriguez, and Serge Egelman · 2019
Earlier work this paper cites.
History and future of automated vulnerability analysis
Adam Doupé · 2019
Earlier work this paper cites.
Understanding security mistakes developers make: Qualitative analysis from build it, break it, fix it
Daniel Votipka, Kelsey R. Fulton, James Parker, Matthew Hou, Michelle L. Mazurek, and Michael Hicks · 2020
Earlier work this paper cites.
Internet of things market analysis forecasts, 2020–2030
Shadi Al-Sarawi, Mohammed Anbar, Rosni Abdullah, and Ahmad B. Al Hawari · 2020
Earlier work this paper cites.
A comprehensive study of autonomous vehicle bugs
Garcia Joshua, Feng Yang, Shen Junjie, Almanee Sumaya, Xia Yuan, Chen, and Qi Alfred · 2020
Earlier work this paper cites.
Historical analysis of exploit availability timelines
Allen D. Householder, Jeff Chrabaszcz, Trent Novelly, David Warren, and Jonathan M. Spring · 2020
Earlier work this paper cites.
Big bird: Transformers for longer sequences
Manzil Zaheer, Guru Guruganesh, Kumar Avinava Dubey, Joshua Ainslie, Chris Alberti, Santiago Ontanon, Philip Pham, Anirudh Ravula, Qifan Wang, Li Yang, et al · 2020
Earlier work this paper cites.
Retrieval-augmented generation for knowledge-intensive nlp tasks
Patrick Lewis, Ethan Perez, Aleksandra Piktus, Fabio Petroni, Vladimir Karpukhin, Naman Goyal, Heinrich Küttler, Mike Lewis, Wen-tau Yih, Tim Rocktäschel, et al · 2020
Earlier work this paper cites.
Language models are few-shot learners
Tom Brown, Benjamin Mann, Nick Ryder, Melanie Subbiah, Jared D Kaplan, Prafulla Dhariwal, Arvind Neelakantan, Pranav Shyam, Girish Sastry, Amanda Askell, et al · 2020
Earlier work this paper cites.
Codebert: A pre-trained model for programming and natural languages
Zhangyin Feng, Daya Guo, Duyu Tang, Nan Duan, Xiaocheng Feng, Ming Gong, Linjun Shou, Bing Qin, Ting Liu, Daxin Jiang, et al · 2020
Earlier work this paper cites.
Codebleu: a method for automatic evaluation of code synthesis
Shuo Ren, Daya Guo, Shuai Lu, Long Zhou, Shujie Liu, Duyu Tang, Neel Sundaresan, Ming Zhou, Ambrosio Blanco, and Shuai Ma · 2020
Earlier work this paper cites.
A Large-Scale interview study on information security in and attacks against small and medium-sized enterprises
Nicolas Huaman, Bennet von Skarczinski, Christian Stransky, Dominik Wermke, Yasemin Acar, Arne Dreißigacker, and Sascha Fahl · 2021
Earlier work this paper cites.
Perspectives on the solarwinds incident
Sean Peisert, Bruce Schneier, Hamed Okhravi, Fabio Massacci, Terry Benzel, Carl Landwehr, Mohammad Mannan, Jelena Mirkovic, Atul Prakash, and James Bret Michael · 2021
Earlier work this paper cites.
PASAN: Detecting peripheral access concurrency bugs within Bare-Metal embedded applications
Taegyu Kim, Vireshwar Kumar, Junghwan Rhee, Jizhou Chen, Kyungtae Kim, Chung Hwan Kim, Dongyan Xu, and Dave (Jing) Tian · 2021
Earlier work this paper cites.
Sharing more and checking less: Leveraging common input keywords to detect bugs in embedded systems
Libo Chen, Yanhao Wang, Quanpu Cai, Yunfan Zhan, Hong Hu, Jiaqi Linghu, Qinsheng Hou, Chao Zhang, Haixin Duan, and Zhi Xue · 2021
Earlier work this paper cites.
A comparative study of automatic program repair techniques for security vulnerabilities
Eduard Pinconschi, Rui Abreu, and Pedro Adão · 2021
Earlier work this paper cites.
A critical review on the evaluation of automated program repair systems
Kui Liu, Li Li, Anil Koyuncu, Dongsun Kim, Zhe Liu, Jacques Klein, and Tegawendé F. Bissyandé · 2021
Cited alongside, same era.
Lora: Low-rank adaptation of large language models, 2021
Edward J. Hu, Yelong Shen, Phillip Wallis, Zeyuan Allen-Zhu, Yuanzhi Li, Shean Wang, Lu Wang, and Weizhu Chen · 2021
Cited alongside, same era.
Deep learning based vulnerability detection: Are we there yet?
Saikat Chakraborty, Rahul Krishna, Yangruibo Ding, and Baishakhi Ray · 2021
Cited alongside, same era.
Beyond tests: Program vulnerability repair via crash constraint extraction
Xiang Gao, Bo Wang, Gregory J Duck, Ruyi Ji, Yingfei Xiong, and Abhik Roychoudhury · 2021
Cited alongside, same era.
Bitfit: Simple parameter-efficient fine-tuning for transformer-based masked language-models
Elad Ben Zaken, Shauli Ravfogel, and Yoav Goldberg · 2021
Cited alongside, same era.
Is your code generated by chatgpt really correct? rigorous evaluation of large language models for code generation
Jiawei Liu, Chunqiu Steven Xia, Yuyao Wang, and LINGMING ZHANG · 2023
Later among the works it cites.
Code llama: Open foundation models for code, 2023
Baptiste Rozière, Jonas Gehring, Fabian Gloeckle, Sten Sootla, Itai Gat, Xiaoqing Ellen Tan, Yossi Adi, Jingyu Liu, Romain Sauvestre, Tal Remez, Jérémy Rapin, Artyom Kozhevnikov, Ivan Evtimov, Joanna Bitton, Manish Bhatt, Cristian Canton Ferrer, Aaron Grattafiori, Wenhan Xiong, Alexandre Défossez, Jade Copet, Faisal Azhar, Hugo Touvron, Louis Martin, Nicolas Usunier, Thomas Scialom, and Gabriel Synnaeve · 2023
Later among the works it cites.
Doctorglm: Fine-tuning your chinese doctor is not a herculean task, 2023
Honglin Xiong, Sheng Wang, Yitao Zhu, Zihao Zhao, Yuxiao Liu, Linlin Huang, Qian Wang, and Dinggang Shen · 2023
Later among the works it cites.
Conversing with copilot: Exploring prompt engineering for solving cs1 problems using natural language
Paul Denny, Viraj Kumar, and Nasser Giacaman · 2023
Later among the works it cites.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Mikel Artetxe, Shruti Bhosale, Naman Goyal, Todor Mihaylov, Myle Ott, Sam Shleifer, Xi Victoria Lin, Jingfei Du, Srinivasan Iyer, Ramakanth Pasunuru, et al · 2021
Cited alongside, same era.
Automated code repair to ensure spatial memory safety
William Klieber, Ruben Martins, Ryan Steele, Matt Churilla, Mike McCall, and David Svoboda · 2021
Cited alongside, same era.
Yue Wang, Weishi Wang, Shafiq Joty, and Steven CH Hoi · 2021
Cited alongside, same era.
Evaluating large language models trained on code
Mark Chen, Jerry Tworek, Heewoo Jun, Qiming Yuan, Henrique Ponde de Oliveira Pinto, Jared Kaplan, Harri Edwards, Yuri Burda, Nicholas Joseph, Greg Brockman, et al · 2021
Cited alongside, same era.
Cvefixes: automated collection of vulnerabilities and their fixes from open-source software
Guru Bhandari, Amara Naseer, and Leon Moonen · 2021
Cited alongside, same era.
Undo workarounds for kernel bugs
Seyed Mohammadjavad Seyed Talebi, Zhihao Yao, Ardalan Amiri Sani, Zhiyun Qian, and Daniel Austin · 2021
Cited alongside, same era.
Drivefuzz: Discovering autonomous driving bugs through driving quality-guided fuzzing
Seulbae Kim, Major Liu, Junghwan ”John” Rhee, Yuseok Jeon, Yonghwi Kwon, and Chung Hwan Kim · 2022
Cited alongside, same era.
Chunqiu Steven Xia and Lingming Zhang · 2023
Later among the works it cites.
Large language models can be easily distracted by irrelevant context
Freda Shi, Xinyun Chen, Kanishka Misra, Nathan Scales, David Dohan, Ed H Chi, Nathanael Schärli, and Denny Zhou · 2023
Later among the works it cites.
On the effectiveness of parameter-efficient fine-tuning
Zihao Fu, Haoran Yang, Anthony Man-Cho So, Wai Lam, Lidong Bing, and Nigel Collier · 2023
Later among the works it cites.
What does clip know about a red circle? visual prompt engineering for vlms
Aleksandar Shtedritski, Christian Rupprecht, and Andrea Vedaldi · 2023
Later among the works it cites.
A prompt pattern catalog to enhance prompt engineering with chatgpt
Jules White, Quchen Fu, Sam Hays, Michael Sandborn, Carlos Olea, Henry Gilbert, Ashraf Elnashar, Jesse Spencer-Smith, and Douglas C Schmidt · 2023
Later among the works it cites.
Can large language models reason about program invariants?
Kexin Pei, David Bieber, Kensen Shi, Charles Sutton, and Pengcheng Yin · 2023
Later among the works it cites.
Wizardcoder: Empowering code large language models with evol-instruct
Ziyang Luo, Can Xu, Pu Zhao, Qingfeng Sun, Xiubo Geng, Wenxiang Hu, Chongyang Tao, Jing Ma, Qingwei Lin, and Daxin Jiang · 2023
Later among the works it cites.
Repairllama: Efficient representations and fine-tuned adapters for program repair
André Silva, Sen Fang, and Martin Monperrus · 2023
Later among the works it cites.
Inferfix: End-to-end program repair with llms
Matthew Jin, Syed Shahriar, Michele Tufano, Xin Shi, Shuai Lu, Neel Sundaresan, and Alexey Svyatkovskiy · 2023
Later among the works it cites.
Automated program repair in the era of large pre-trained language models
Chunqiu Steven Xia, Yuxiang Wei, and Lingming Zhang · 2023
Later among the works it cites.
Repair is nearly generation: Multilingual program repair with llms
Harshit Joshi, José Cambronero Sanchez, Sumit Gulwani, Vu Le, Gust Verbruggen, and Ivan Radiček · 2023
Later among the works it cites.
Better patching using llm prompting, via self-consistency
Toufique Ahmed and Premkumar Devanbu · 2023
Later among the works it cites.
Keep the conversation going: Fixing 162 out of 337 bugs for $0.42 each using chatgpt
Chunqiu Steven Xia and Lingming Zhang · 2023
Later among the works it cites.
Examining zero-shot vulnerability repair with large language models
Hammond Pearce, Benjamin Tan, Baleegh Ahmad, Ramesh Karri, and Brendan Dolan-Gavitt · 2023
Later among the works it cites.
Automatic bug fixing via deliberate problem solving with large language models
Guoyang Weng and Artur Andrzejak · 2023
Later among the works it cites.
Vision transformer inspired automated vulnerability repair
Michael Fu, Van Nguyen, Chakkrit Tantithamthavorn, Dinh Phung, and Trung Le · 2024
Later among the works it cites.
Hello gpt-4o — openai, 2024
OpenAI · 2024
Later among the works it cites.
Meta llama 3, 2024
Meta Research · 2024
Later among the works it cites.
Mixtral of experts, 2024
Albert Q. Jiang, Alexandre Sablayrolles, Antoine Roux, Arthur Mensch, Blanche Savary, Chris Bamford, Devendra Singh Chaplot, Diego de las Casas, Emma Bou Hanna, Florian Bressand, Gianna Lengyel, Guillaume Bour, Guillaume Lample, Lélio Renard Lavaud, Lucile Saulnier, Marie-Anne Lachaux, Pierre Stock, Sandeep Subramanian, Sophia Yang, Szymon Antoniak, Teven Le Scao, Théophile Gervet, Thibaut Lavril, Thomas Wang, Timothée Lacroix, and William El Sayed · 2024
Later among the works it cites.
Rampo: A cegar-based integration of binary code analysis and system falsification for cyber-kinetic vulnerability detection
Kohei Tsujio, Mohammad Abdullah Al Faruque, and Yasser Shoukry · 2024
Later among the works it cites.
Are emergent abilities of large language models a mirage?
Rylan Schaeffer, Brando Miranda, and Sanmi Koyejo · 2024
Later among the works it cites.
Qlora: Efficient finetuning of quantized llms
Tim Dettmers, Artidoro Pagnoni, Ari Holtzman, and Luke Zettlemoyer · 2024
Later among the works it cites.
Mixture-of-loras: An efficient multitask tuning for large language models
Wenfeng Feng, Chuzhan Hao, Yuewei Zhang, Yu Han, and Hao Wang · 2024
Later among the works it cites.
No man is an island: Towards fully automatic programming by code search, code generation and program repair, 2024
Quanjun Zhang, Chunrong Fang, Ye Shang, Tongke Zhang, Shengcheng Yu, and Zhenyu Chen · 2024
Later among the works it cites.
Fixing code generation errors for large language models, 2024
Hao Wen, Yueheng Zhu, Chao Liu, Xiaoxue Ren, Weiwei Du, and Meng Yan · 2024
Later among the works it cites.
Safe: Advancing large language models in leveraging semantic and syntactic relationships for software vulnerability detection, 2024
Van Nguyen, Surya Nepal, Tingmin Wu, Xingliang Yuan, and Carsten Rudolph · 2024
Later among the works it cites.
Autosafecoder: A multi-agent framework for securing llm code generation through static analysis and fuzz testing, 2024
Ana Nunez, Nafis Tanveer Islam, Sumit Kumar Jha, and Peyman Najafirad · 2024
Later among the works it cites.
Llm4plc: Harnessing large language models for verifiable programming of plcs in industrial control systems
Mohamad Fakih, Rahul Dharmaji, Yasamin Moghaddas, Gustavo Quiros, Oluwatosin Ogundare, and Mohammad Abdullah Al Faruque · 2024
Later among the works it cites.
Multi-objective fine-tuning for enhanced program repair with llms
Boyang Yang, Haoye Tian, Jiadong Ren, Hongyu Zhang, Jacques Klein, Tegawendé F Bissyandé, Claire Le Goues, and Shunfu Jin · 2024
Later among the works it cites.
Large language model for vulnerability detection and repair: Literature review and roadmap
Xin Zhou, Sicong Cao, Xiaobing Sun, and David Lo · 2024
Later among the works it cites.