Double-Edged Sword of LLMs: Mitigating Security Risks of AI-Generated Code

被引:2
|
作者
Bharadwaj, Ramesh [1 ]
Parker, Ilya [2 ]
机构
[1] Naval Res Lab, Ctr High Assurance Comp Syst, Washington, DC 20375 USA
[2] Arcfield, 14295 Pk Meadow Dr, Chantilly, VA 20151 USA
关键词
Large Language Models; Generative AI; Symbolic AI; Automatic Code Generation; Code Defect Mitigation;
D O I
10.1117/12.2664116
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
With the increasing reliance on collaborative and cloud-based systems, there is a drastic increase in attack surfaces and code vulnerabilities. Automation is key for fielding and defending software systems at scale. Researchers in Symbolic AI have had considerable success in finding flaws in human-created code. Also, run-time testing methods such as fuzzing do uncover numerous bugs. However, the major deficiency of both approaches is the inability of the methods to fix the discovered errors. They also do not scale and defy automation. Static analysis methods also suffer from the false positive problem - an overwhelming number of reported flaws are not real bugs. This brings up an interesting conundrum: Symbolic approaches actually have a detrimental impact on programmer productivity, and therefore do not necessarily contribute to improved code quality. What is needed is a combination of automation of code generation using large language models (LLMs), with scalable defect elimination methods using symbolic AI, to create an environment for the automated generation of defect-free code.
引用
收藏
页数:6
相关论文
共 50 条
  • [1] Navigating (in)security of AI-generated code
    Ambati, Sri Haritha
    Ridley, Norah
    Branca, Enrico
    Stakhanova, Natalia
    2024 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE, CSR, 2024, : 30 - 37
  • [2] Environmental Sustainability and AI in Radiology: A Double-Edged Sword
    Doo, Florence X.
    Vosshenrich, Jan
    Cook, Tessa S.
    Moy, Linda
    Almeida, Eduardo P. R. P.
    Woolen, Sean A.
    Gichoya, Judy Wawira
    Heye, Tobias
    Hanneman, Kate
    RADIOLOGY, 2024, 310 (02)
  • [3] The environmental impact of AI in the lab: a double-edged sword?
    Coulson, Annie
    BIOTECHNIQUES, 2024, 76 (08) : 353 - 356
  • [4] A double-edged sword
    Baxi, Sanjiv
    Platts-Mills, James
    Dhruva, Sanket
    Huang, Laurence
    Hanks, Doug
    Dhaliwal, Gurpreet
    JOURNAL OF HOSPITAL MEDICINE, 2013, 8 (01) : 47 - 51
  • [5] Double-edged sword
    Chen, GF
    ADHESIVES AGE, 1999, 42 (10): : 29 - +
  • [6] A double-edged sword
    Valerie Ferrier
    Nature Cell Biology, 2002, 4 : E79 - E79
  • [7] A double-edged sword
    Nature Reviews Drug Discovery, 2008, 7 : 275 - 275
  • [8] A double-edged sword
    Kelley, B
    EQUINE ATHLETE, 1997, 10 (01): : 15 - 19
  • [9] A double-edged sword
    Vieira, Eduardo Alves
    JOURNAL OF LANGUAGE AND SEXUALITY, 2025, 14 (01) : 91 - 114
  • [10] The double-edged sword
    Steen, Trui P. S.
    Rutgers, Mark R.
    PUBLIC MANAGEMENT REVIEW, 2011, 13 (03) : 343 - 361