Главная
Study mode:
on
1
Introduction
2
What is GitHub Copilot
3
Language Models
4
Demo
5
Why is this happening
6
Common Weakness Enumeration Taxonomy
7
Relevance Scenarios
8
Three Dimensions
9
Experiment Overview
10
CWE 787 Example
11
Use After Free Example
12
Command Injection Example
13
Results
14
Knowledgebased errors
15
Diversity of Prompt
16
Verilog
17
Conclusions
18
AI Tools
19
Questions
20
Question from Fish
Description:
Explore a conference talk examining the security implications of GitHub Copilot's code contributions. Delve into the assessment of AI-generated code, focusing on common vulnerabilities and weaknesses. Learn about the experiment overview, including examples of buffer overflow, use-after-free, and command injection issues. Analyze the results, discussing knowledge-based errors and the impact of prompt diversity. Gain insights into AI tools in software development and their potential security risks.

Asleep at the Keyboard? Assessing the Security of GitHub Copilot's Code Contributions

IEEE
Add to list
0:00 / 0:00