From Verdict to Diagnosis: Attributable Security Review of Pull Requests
cs.CR
Submitted: 2026-08-26
Updated: 2026-08-26
Code: https://github.com/goauthentik/authentik
Terminology
Sources
- From Assistance to Agency: Rethinking Autonomy and Control in CI/CD Pipelines
- Trust but Verify? Uncovering the Security Debt of Autonomous Coding Agents
- IssueTrojanBench: Benchmarking AI Coding Agents Against Malicious Issue Requests
- ExploitGym: Can AI Agents Turn Security Vulnerabilities into Real Attacks?
- CyberGym: Evaluating AI Agents' Real-World Cybersecurity Capabilities at Scale
- Agentless: Demystifying LLM-based Software Engineering Agents
- Benchmarking LLMs and LLM-based Agents in Practical Vulnerability Detection for Code Repositories
Related papers
- SoK: AI-Augmented Binary Reversing
- Relaxed Sender Anonymity for CBDC Interbank Settlement: A Zero-Knowledge Approach on Permissioned EVM
- Calibration-Family Overfit: Why Trusted Sabotage Monitors Don't Transfer Across Lineages
- Efficient Fuzzy PSI under One-Sided Assumptions
- Sealing the Audit-Runtime Gap for LLM Skills
- Token Composition: A Graph Based on EVM Logs