Please use this identifier to cite or link to this item: http://hdl.handle.net/10071/37302
Full metadata record
DC FieldValueLanguage
dc.contributor.authorSathwik A.-
dc.contributor.authorGasiba, T.-
dc.contributor.authorLechner, U.-
dc.contributor.authorPinto-Albuquerque, M.-
dc.contributor.editorQueirós, Ricardo-
dc.contributor.editorPinto, Mário-
dc.contributor.editorPortela, Filipe-
dc.contributor.editorSimões, Alberto-
dc.date.accessioned2026-05-19T09:03:52Z-
dc.date.available2026-05-19T09:03:52Z-
dc.date.issued2025-
dc.identifier.citationSathwik A., Gasiba, T., Lechner, U., & Pinto-Albuquerque, M. (2025). Enabling secure coding: Exploring GenAI for developer training and education. ?. In R. Queirós, M. Pinto, F. Portela, & A. Simões (Eds.), 6th International Computer Programming Education Conference (ICPEC 2025). Schloss Dagstuhl. https://doi.org/10.4230/OASIcs.ICPEC.2025.2-
dc.identifier.isbn978-3-95977-393-5-
dc.identifier.issn1868-8969-
dc.identifier.urihttp://hdl.handle.net/10071/37302-
dc.description.abstractThe rapid adoption of GenAI for code generation presents unprecedented opportunities and significant security challenges. Raising awareness about secure coding is critical for preventing software vulnerabilities. To investigate how Generative AI can best support secure coding, we built an AI Secure Coding platform, an interactive training environment that embeds a GPT-4 based chatbot directly into a structured challenge workflow. The platform comprises a landing page, a challenges page with three AI-generated tasks, and a challenge page where participants work with code snippets. In each challenge, developers (1) identify vulnerabilities by reviewing code and adding comments, (2) ask the AI for help via a chat based interface, (3) review and refine comments based on AI feedback, and (4) fix vulnerabilities by submitting secure patches. The study involved 18 industry developers tackling three challenges. Participants used the AI Secure Coding Platform to detect and remediate vulnerabilities and then completed a survey to capture their opinions and comfort level with AI assisted platform for secure coding. Results show that AI assistance can boost productivity, reduce errors, and uncover more defects when treated as a "second pair of eyes," but it can also foster over-reliance. This study introduces the AI Secure Coding platform, presents preliminary results from a initial study, and shows that embedding GenAI into a structured secure-coding workflow can both enable and challenge developers. This work also opens the door to a new research field: leveraging GenAI to enable secure software development.eng
dc.language.isoeng-
dc.publisherSchloss Dagstuhl-
dc.relationinfo:eu-repo/grantAgreement/FCT/Concurso de avaliação no âmbito do Programa Plurianual de Financiamento de Unidades de I&D (2017%2F2018) - Financiamento Base/UIDB%2F04466%2F2020/PT-
dc.relation.ispartof6th International Computer Programming Education Conference (ICPEC 2025)-
dc.rightsopenAccess-
dc.subjectSecure codingeng
dc.subjectIndustryeng
dc.subjectSoftware developmenteng
dc.subjectGenerative AIeng
dc.subjectLarge language modelseng
dc.subjectTeachingeng
dc.titleEnabling secure coding: Exploring GenAI for developer training and educationeng
dc.typeconferenceObject-
dc.event.typeConferênciapt
dc.event.locationPortoeng
dc.event.date2025-
dc.peerreviewedyes-
dc.volume133-
dc.date.updated2026-05-19T10:03:12Z-
dc.description.versioninfo:eu-repo/semantics/publishedVersion-
dc.identifier.doi10.4230/OASIcs.ICPEC.2025.2-
dc.subject.fosDomínio/Área Científica::Ciências Naturais::Matemáticaspor
dc.subject.fosDomínio/Área Científica::Ciências Sociais::Geografia Económica e Socialpor
iscte.identifier.cienciahttps://ciencia.iscte-iul.pt/id/ci-pub-116620-
iscte.alternateIdentifiers.wosWOS:001748591000002-
Appears in Collections:ISTAR-CRI - Comunicações a conferências internacionais

Files in This Item:
File SizeFormat 
conferenceObject_116620.pdf2,66 MBAdobe PDFView/Open


FacebookTwitterDeliciousLinkedInDiggGoogle BookmarksMySpaceOrkut
Formato BibTex mendeley Endnote Logotipo do DeGóis Logotipo do Orcid 

Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.