LLMs to Adjudicate Static Analysis Alerts (LASAA) Assets

Collection
By
This collection contains assets related to the LLMs to Adjudicate Static Analysis Alerts (LASAA) project.
Publisher

Software Engineering Institute

Abstract

Using large language models (LLMs) to adjudicate static analysis alerts enables more complete alert adjudication, reducing unknown risk and improving software security.

Software vulnerabilities pose a significant risk to critical systems. Static analysis is a standard method for evaluating source code, but it requires significant manual effort and is time consuming and expensive. LLMs are a new technology with promising initial results for automation of alert adjudication and rationales. Using LLMs to adjudicate static analysis alerts has the potential to enable more secure code, support mission effectiveness, and reduce support costs.

Collection Items