The ongoing shortage of skilled developers, particularly in security-critical software development, has led organizations to increasingly adopt AI-powered development tools to boost productivity and reduce reliance on limited human expertise. These tools, often based on large language models, aim to automate routine tasks and make secure software development more accessible and efficient. However, it remains unclear how developers' general programming and security-specific experience, and the type of AI tool used (free vs. paid) affect the security of the resulting software. Therefore, we conducted a quantitative programming study with software developers (n=159) exploring the impact of Google's AI tool Gemini on code security. Participants were assigned a security-related programming task using either no AI tools, the free version, or the paid version of Gemini. While we did not observe significant differences between using Gemini in terms of secure software development, programming experience significantly improved code security and cannot be fully substituted by Gemini.


翻译:当前,熟练开发人员(尤其是安全关键型软件开发领域)的持续短缺,已促使各组织越来越多地采用基于人工智能的开发工具,以提高生产力并减少对有限人类专业知识的依赖。这些通常基于大语言模型的工具,旨在自动化常规任务,并使安全软件开发更易于实施且更高效。然而,目前尚不清楚开发人员的一般编程与安全特定经验,以及所用AI工具的类型(免费版与付费版)如何影响最终软件的安全性。为此,我们开展了一项针对软件开发人员(n=159)的定量编程研究,旨在探究谷歌AI工具Gemini对代码安全性的影响。参与者被分配一项安全相关的编程任务,分别在不使用AI工具、使用Gemini免费版或付费版的条件下完成。虽然我们未观察到使用Gemini在安全软件开发方面存在显著差异,但编程经验显著提升了代码安全性,且其作用无法被Gemini完全替代。

0
下载
关闭预览

相关内容

软件(中国大陆及香港用语,台湾作软体,英文:Software)是一系列按照特定顺序组织的计算机数据和指令的集合。一般来讲软件被划分为编程语言、系统软件、应用软件和介于这两者之间的中间件。软件就是程序加文档的集合体。
人工智能与机器学习对组织网络安全的影响研究 | 273页
专知会员服务
19+阅读 · 2025年10月27日
机密计算保障人工智能系统安全研究报告
专知会员服务
20+阅读 · 2025年1月20日
《人工智能对战略和业务决策的影响》
专知会员服务
61+阅读 · 2023年12月17日
人工智能安全挑战及治理研究
专知会员服务
67+阅读 · 2023年6月18日
专知会员服务
64+阅读 · 2021年7月5日
人工智能模型数据泄露的攻击与防御研究综述
专知会员服务
79+阅读 · 2021年3月31日
《人工智能安全测评白皮书》,99页pdf
专知
36+阅读 · 2022年2月26日
【深度学习】深度学习技术发展趋势浅析
产业智能官
11+阅读 · 2019年4月13日
深度学习技术发展趋势浅析
人工智能学家
28+阅读 · 2019年4月11日
数学是普通程序员入门人工智能的最大障碍
算法与数据结构
12+阅读 · 2018年7月27日
【智能装备】人工智能对装备制造业的影响分析
产业智能官
10+阅读 · 2018年6月9日
人工智能对网络空间安全的影响
走向智能论坛
21+阅读 · 2018年6月7日
国家自然科学基金
4+阅读 · 2017年12月31日
国家自然科学基金
6+阅读 · 2017年12月31日
国家自然科学基金
1+阅读 · 2015年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
国家自然科学基金
1+阅读 · 2014年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
国家自然科学基金
18+阅读 · 2014年12月31日
国家自然科学基金
10+阅读 · 2012年12月31日
VIP会员
最新内容
伊朗不对称防空战略的演进
专知会员服务
1+阅读 · 今天11:10
对抗环境下超视距目标打击的情报支援
专知会员服务
10+阅读 · 7月22日
《无人机对海面作战影响评估》
专知会员服务
15+阅读 · 7月21日
印度精确打击与指挥架构的断层
专知会员服务
7+阅读 · 7月20日
美空军AI完成F-16战斗机自主空战历史性试飞
专知会员服务
8+阅读 · 7月20日
相关VIP内容
人工智能与机器学习对组织网络安全的影响研究 | 273页
专知会员服务
19+阅读 · 2025年10月27日
机密计算保障人工智能系统安全研究报告
专知会员服务
20+阅读 · 2025年1月20日
《人工智能对战略和业务决策的影响》
专知会员服务
61+阅读 · 2023年12月17日
人工智能安全挑战及治理研究
专知会员服务
67+阅读 · 2023年6月18日
专知会员服务
64+阅读 · 2021年7月5日
人工智能模型数据泄露的攻击与防御研究综述
专知会员服务
79+阅读 · 2021年3月31日
相关基金
国家自然科学基金
4+阅读 · 2017年12月31日
国家自然科学基金
6+阅读 · 2017年12月31日
国家自然科学基金
1+阅读 · 2015年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
国家自然科学基金
1+阅读 · 2014年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
国家自然科学基金
18+阅读 · 2014年12月31日
国家自然科学基金
10+阅读 · 2012年12月31日
Top
微信扫码咨询专知VIP会员