Seems reasonable: "Our findings reveal that the standalone LLM introduces nearly 9x more new vulnerabilities than developers, with many of these exhibiting unique patterns not found in developers'code. Agentic workflows also generate a significant number of vulnerabilities, particularly when granting LLMs more autonomy, potentially increasing the likelihood of misinterpreting project context or task requirements. We find that vulnerabilities are more likely to occur in LLM patches associated with a higher number of files, more lines of generated code, and GitHub issues that lack specific code snippets or information about the expected code behavior and steps to reproduce"
Hacking since 1983.
| GPG | 0692AD3F13A5016A3ACF72454D97F757E8074EC8 |
| Blog | https://dguerri.github.io/random-tech-stuff |
| Github | https://github.com/dguerri |
| Keybase | https://dguerri.keybase.pub/proofs/mastodon.html |
| https://www.linkedin.com/in/dguerri | |
| u/guerri |





