العودة إلى التحديثات
UpdatedAug 31, 2026

Awesome-LLMs-for-Vulnerability-Detection — Updated!

الفهرس الأكثر شمولاً وتحديثاً باستمرار في المجتمع للأبحاث حول نماذج اللغة الكبيرة لاكتشاف الثغرات البرمجية — أوراق بحثية عبر اكتشاف على مستوى الدوال، ومستوى المستودعات، والعوامل الذكية، والعقود الذكية، بالإضافة إلى مجموعات البيانات والمعايير والدراسات الاستقصائية.

مشاركة

قائمة رائعة لنماذج اللغة الكبيرة لاكتشاف الثغرات الأمنية

قائمة منسقة من الأوراق البحثية والمشاريع ومهارات الوكلاء حول استخدام نماذج اللغة الكبيرة (LLMs) لاكتشاف الثغرات الأمنية والكشف عنها.


📄 الأوراق البحثية

يتم عرض الأوراق من عام 2025 وما بعده فقط. للأعمال السابقة، راجع أرشيف الأوراق (2024 وما قبل).

العنوانالمؤتمر/المجلةالسنةالورقةجيثب
VulnGym: Benchmarking Coding Agents for Repository-Level Vulnerability Detection2026رابطرابط
VulTriage: Triple-Path Context Augmentation for LLM-Based Vulnerability Detection2026رابطرابط
Synthesizing Multi-Agent Harnesses for Vulnerability Discovery2026رابطرابط
QRS: A Rule-Synthesizing Neuro-Symbolic Triad for Autonomous Vulnerability Discovery2026رابط
Seclens: Role-specific Evaluation of LLM's for security vulnerablity detection2026رابطرابط
Do Fine-Tuned LLMs Understand Vulnerabilities? An Investigation into the Semantic Trap2026رابط
Sifting the Noise: A Comparative Study of LLM Agents in Vulnerability False Positive FilteringISSTA2026رابط
AgenticSCR: An Autonomous Agentic Secure Code Review for Immature Vulnerabilities Detection2026رابط
LLM-based Vulnerability Detection at Project Scale: An Empirical Study2026رابط
MulVul: Retrieval-augmented Multi-Agent Code Vulnerability Detection via Cross-Model Prompt Evolution2026رابط
VulnLLM-R: Specialized Reasoning LLM with Agent Scaffold for Vulnerability Detection2025رابط
VULPO: Context-Aware Vulnerability Detection via On-Policy LLM Optimization2025رابط
VulInstruct: Teaching LLMs Root-Cause Reasoning for Vulnerability Detection via Security Specifications2025رابط
From Large to Mammoth: A Comparative Evaluation of Large Language Models in Vulnerability DetectionNDSS2025رابط
Benchmarking LLMs and LLM-based Agents in Practical Vulnerability Detection for Code RepositoriesACL2025رابطرابط
A Systematic Literature Review on Detecting Software Vulnerabilities with Large Language Models2025رابطرابط
LLMxCPG: Context-Aware Vulnerability Detection Through Code Property Graph-Guided Large Language ModelsUsenix2025رابطرابط
CLeVeR: Multi-modal Contrastive Learning for Vulnerability Code RepresentationACL Findings2025رابطرابط
Mono: Is Your "Clean" Vulnerability Dataset Really Solvable? Exposing and Trapping Undecidable Patches and Beyond2025رابطرابط
Learning to Focus: Context Extraction for Efficient Code Vulnerability Detection with Language Models2025رابط
SV-TrustEval-C: Evaluating Structure and Semantic Reasoning in Large Language Models for Source Code Vulnerability AnalysisSP2025رابطرابط
SecVulEval: Benchmarking LLMs for Real-World C/C++ Vulnerability Detection2025رابطرابط
CVE-Bench: Benchmarking LLM-based Software Engineering Agent's Ability to Repair Real-World CVE VulnerabilitiesNAACL2025رابطرابط
R2Vul: Learning to Reason about Software Vulnerabilities with Reinforcement Learning and Structured Reasoning Distillation2025رابطرابط
Neuro-symbolic Static Analysis with LLM-generated Vulnerability Patterns2025رابط
Context-Enhanced Vulnerability Detection Based on Large Language Model2025رابط
Everything You Wanted to Know About LLM-based Vulnerability Detection But Were Afraid to Ask2025رابطرابط
MOS: Towards Effective Smart Contract Vulnerability Detection through Mixture-of-Experts Tuning of Large Language Models2025رابط
Abundant Modalities Offer More Nutrients: Multi-Modal-Based Function-Level Vulnerability DetectionTOSEM2025رابطرابط
Generative Large Language Model usage in Smart Contract Vulnerability Detection2025رابط
Closing the Gap: A User Study on the Real-world Usefulness of AI-powered Vulnerability Detection & Repair in the IDEICSE2025رابطرابط
Vulnerability Detection with Code Language Models: How Far Are We?ICSE2025رابطرابط
Combining Fine-Tuning and LLM-based Agents for Intuitive Smart Contract Auditing with JustificationsICSE2025رابط
LAMD: Context-driven Android Malware Detection and Classification with LLMs2025رابط
LLMs in Software Security: A Survey of Vulnerability Detection Techniques and Insights2025رابطرابط
One-for-All Does Not Work! Enhancing Vulnerability Detection by Mixture-of-Experts (MoE)2025رابط

🚀 المشاريع

الاسمالوصفجيثب
OpenAnt (Knostic)اكتشاف متعدد المراحل للثغرات مدعوم بنماذج اللغة الكبيرة مع تحقق عدائيرابط
DeepAuditمنصة فريق أحمر ذكاء اصطناعي متعدد الوكلاء مع تحقق من استغلال الثغرات عبر حاويات Docker المعزولةرابط
AutoCVEاكتشاف آلي للثغرات وإعداد تقارير عنها بمعمارية متعددة الوكلاءرابط
Darkmoonمنصة اختبار اختراق ذكاء اصطناعي مستقلة مفتوحة المصدر (GPL-3.0) ومضيف MCP؛ وكلاء فرعيون هجوميون حسب التقنية، تغطية Active Directory و Kubernetes، أكثر من 80 أداة منسقة، سلسلة أدلة لكل اكتشافرابط
strixأداة اختبار اختراق ذكاء اصطناعي مستقلة مفتوحة المصدر عبر pipرابط
deepsec (Vercel)إطار أمان لفحص الثغرات العميق في قواعد الأكواد باستخدام وكلاء البرمجةرابط

🧩 مهارات الوكلاء

الاسمالوصفالرابط
codex-security (OpenAI)فحص مستقل للثغرات على مستوى المستودع عبر وكلاء Codexرابط
defending-code-reference-harness (Anthropic)مهارات مرجعية لنمذجة التهديدات والفحص والفرز والتصحيح باستخدام Claude Codeرابط
security-audit-skill (Cloudflare)مهارة تدقيق أمني من ست مراحل مع وكلاء صيد متوازيين وتحقق عدائيرابط

📡 arxiv.md

التقاط وتحديث يومي آلي لأوراق Arxiv للكلمات المفتاحية المحددة عبر سير العمل.

شكر وتقدير

سير عمل تحديث أوراق Arxiv اليومي في هذا المشروع مستوحى من هذا المشروع LLM4SE. قمت بإعادة هيكلة الكود الأصلي باستخدام مكتبة arxiv.

الفئات