๐ The future of #icse is global!
๐ง๐ท ICSE 2026 โ Brazil #icse2026
๐ฎ๐ช ICSE 2027 โ Ireland #icse2027
๐บ ICSE 2028 โ Hawaii #icse2028
We can't wait to see you there! Pack your ideas and your passport. ๐งณโ๏ธ
@preethac.bsky.social
Asst. Prof. Drexel Dept. Of Computer Science @drexeluniv | Research on mining software repositories, empirical software engineering https://preethac.github.io/
๐ The future of #icse is global!
๐ง๐ท ICSE 2026 โ Brazil #icse2026
๐ฎ๐ช ICSE 2027 โ Ireland #icse2027
๐บ ICSE 2028 โ Hawaii #icse2028
We can't wait to see you there! Pack your ideas and your passport. ๐งณโ๏ธ
๐ก If you are building, evaluating, or relying on LLMs for software development, please ask yourself: Did it warn you about the hidden security risk?
07.04.2025 13:43 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0As a preliminary solution to this problem, we built a CLI tool prototype that integrates static analysis with LLM prompting, aiming to make AI code suggestions more secure by design.
07.04.2025 13:43 โ ๐ 0 ๐ 0 ๐ฌ 1 ๐ 0However, when LLMs do warn you, they tend to offer more complete explanations, including potential causes of the vulnerability, exploits, and even fixes.
07.04.2025 13:43 โ ๐ 0 ๐ 0 ๐ฌ 1 ๐ 0We evaluated GPT-4, Claude 3, and Llama 3 across 300 real-world Stack Overflow posts containing vulnerable code.
The results?
โ ๏ธ<40% of vulns flagged
โ ๏ธAs low as 12.6% when code was obfuscated
โ ๏ธCommon issues (e.g., unsanitized input) often missed - unless explicitly prompted
LLMs are great at generating code, but are they silently spreading vulnerabilities? TLDR: Yes.
In our latest EMSE paper, we look into: when developers unknowingly share vulnerable code with LLMs, do these models proactively raise security red flags? ๐งต
๐ Read the paper: arxiv.org/abs/2502.14202
Delighted to share that our paper, led by my PhD advisee Ramtin Ehsani, โTowards Detecting Prompt Knowledge Gaps for Improved LLM-guided Issue Resolution,โ has been accepted to the Research Track of MSR 2025.
Preprint: soar-lab.github.io//papers/MSR2...
I can now run a GPT-4 class model on my laptop
(The exact same laptop that could just about run a GPT-3 class model 20 months ago)
The new Llama 3.3 70B is a striking example of the huge efficiency gains we've seen in the last two years
simonwillison.net/2024/Dec/9/l...
Congrats!!
10.12.2024 14:59 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0#NeurIPS2024 paper 3, Assemblage - the dataset of source-to-binary projects compiled from GitHub that you've dreamed of bet never had before! Collab with @krismicinski.bsky.social and a multi-year effort to get to @NeurIPSConf @BoozAllen arxiv.org/abs/2405.03991
07.12.2024 20:01 โ ๐ 6 ๐ 3 ๐ฌ 1 ๐ 0๐ Thrilled to share that our paper (with Ramtin Ehsani and @rezapour.bsky.social) has been accepted at NLBSE'25, co-located with @icseconf.bsky.social! ๐
Our work shows promise in improving toxicity detection in OSS using moral values & psycholinguistic cues. Preprint coming soon.
Can you please add me here
23.11.2024 03:28 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0