Skip to main content

Showing 1–3 of 3 results for author: Karkevandi, M B

Searching in archive cs. Search in all archives.
.
  1. arXiv:2401.09727  [pdf, other

    cs.CR cs.CL

    Large Language Model Lateral Spear Phishing: A Comparative Study in Large-Scale Organizational Settings

    Authors: Mazal Bethany, Athanasios Galiopoulos, Emet Bethany, Mohammad Bahrami Karkevandi, Nishant Vishwamitra, Peyman Najafirad

    Abstract: The critical threat of phishing emails has been further exacerbated by the potential of LLMs to generate highly targeted, personalized, and automated spear phishing attacks. Two critical problems concerning LLM-facilitated phishing require further investigation: 1) Existing studies on lateral phishing lack specific examination of LLM integration for large-scale attacks targeting the entire organiz… ▽ More

    Submitted 18 January, 2024; originally announced January 2024.

  2. arXiv:2401.07031  [pdf, other

    cs.CR cs.AI cs.SE

    Code Security Vulnerability Repair Using Reinforcement Learning with Large Language Models

    Authors: Nafis Tanveer Islam, Mohammad Bahrami Karkevandi, Peyman Najafirad

    Abstract: With the recent advancement of Large Language Models (LLMs), generating functionally correct code has become less complicated for a wide array of developers. While using LLMs has sped up the functional development process, it poses a heavy risk to code security. Code generation with proper security measures using LLM is a significantly more challenging task than functional code generation. Securit… ▽ More

    Submitted 30 January, 2024; v1 submitted 13 January, 2024; originally announced January 2024.

  3. arXiv:2401.03374  [pdf, other

    cs.SE cs.AI

    LLM-Powered Code Vulnerability Repair with Reinforcement Learning and Semantic Reward

    Authors: Nafis Tanveer Islam, Joseph Khoury, Andrew Seong, Mohammad Bahrami Karkevandi, Gonzalo De La Torre Parra, Elias Bou-Harb, Peyman Najafirad

    Abstract: In software development, the predominant emphasis on functionality often supersedes security concerns, a trend gaining momentum with AI-driven automation tools like GitHub Copilot. These tools significantly improve developers' efficiency in functional code development. Nevertheless, it remains a notable concern that such tools are also responsible for creating insecure code, predominantly because… ▽ More

    Submitted 21 February, 2024; v1 submitted 6 January, 2024; originally announced January 2024.