paper-with-me

홈 › Papers

SeBERTis: A Framework for Producing Classifiers of Security-Related Issue Reports

2025-12-17 · Sogol Masoumzadeh, Yufei Li, Shane McIntosh, Dániel Varró, Lili Wei arxiv

Monitoring issue tracker submissions is a crucial software maintenance activity. A key goal is the prioritization of high risk, security-related bugs. If such bugs can be recognized early, the risk of propagation to dependent products and endangerment of stakeholder benefits can be mitigated. To assist triage engineers with this task, several automatic detection techniques, from Machine Learning (ML) models to prompting Large Language Models (LLMs), have been proposed. Although promising to some extent, prior techniques often memorize lexical cues as decision shortcuts, yielding low detection rate specifically for more complex submissions. As such, these classifiers do not yet reach the practical expectations of a real-time detector of security-related issues. To address these limitations, we propose SEBERTIS, a framework to train Deep Neural Networks (DNNs) as classifiers independent of lexical cues, so that they can confidently detect fully unseen security-related issues. SEBERTIS capitalizes on fine-tuning bidirectional transformer architectures as Masked Language Models (MLMs) on a series of semantically equivalent vocabulary to prediction labels (which we call Semantic Surrogates) when they have been replaced with a mask. Our SEBERTIS-trained classifier achieves a 0.9880 F1-score in detecting security-related issues of a curated corpus of 10,000 GitHub issue reports, substantially outperforming state-of-the-art issue classifiers, with 14.44%-96.98%, 15.40%-93.07%, and 14.90%-94.72% higher detection precision, recall, and F1-score over ML-based baselines. Our classifier also substantially surpasses LLM baselines, with an improvement of 23.20%-63.71%, 36.68%-85.63%, and 39.49%-74.53% for precision, recall, and F1-score.

📄 PDF Abstract BibTeX arXiv:2512.15003

Code (0)

등록된 구현이 없습니다.

Similar Papers 제목 키워드 기반

On Security and Sparsity of Linear Classifiers for Adversarial Settings

2017-08-31 · Ambra Demontis, Paolo Russu, Battista Biggio, Giorgio Fumera 외

Machine-learning techniques are widely used in security-related applications, like spam and malware detection. However, in such settings, they have been shown to be vulnerable to adversarial attacks, including the delibe…

Malware Detection

Generating Cyber Threat Intelligence to Discover Potential Security Threats Using Classification and Topic Modeling

2021-08-16 · Md Imran Hossen, Ashraful Islam, Farzana Anowar, Eshtiak Ahmed 외

Due to the variety of cyber-attacks or threats, the cybersecurity community enhances the traditional security control mechanisms to an advanced level so that automated tools can encounter potential security threats. Very…

Computer Security

Cyber Security Data Science: Machine Learning Methods and their Performance on Imbalanced Datasets

2025-05-07 · Mateo Lopez-Ledezma, Gissel Velarde

Cybersecurity has become essential worldwide and at all levels, concerning individuals, institutions, and governments. A basic principle in cybersecurity is to be always alert. Therefore, automation is imperative in proc…

Anomaly DetectionBinary ClassificationFraud DetectionIntrusion Detection+2

Text generation for dataset augmentation in security classification tasks

2023-10-22 · Alexander P. Welsh, Matthew Edwards

Security classifiers, designed to detect malicious content in computer systems and communications, can underperform when provided with insufficient training data. In the security domain, it is often easy to find samples …

Data AugmentationFraud DetectionLanguage ModelingLanguage Modelling+4

From Vulnerabilities to Remediation: A Systematic Literature Review of LLMs in Code Security

2024-12-19 · Enna Basic, Alberto Giaretta

Large Language Models (LLMs) have emerged as powerful tools for automating various programming tasks, including security-related ones, such as detecting and fixing vulnerabilities. Despite their promising capabilities, w…

Data PoisoningSystematic Literature Review