04-22-2023, 08:00 AM
|
#316
|
Franchise Player
Join Date: Mar 2015
Location: Pickle Jar Lake
|
Quote:
ChatGPT creates mostly insecure code, but won't tell you unless you ask
Boffins warn of risks from chatbot model that, Dunning–Kruger style, fails to catch its own bad advice
|
Quote:
"The results were worrisome," the authors state in their paper. "We found that, in several cases, the code generated by ChatGPT fell well below minimal security standards applicable in most contexts. In fact, when prodded to whether or not the produced code was secure, ChatGPT was able to recognize that it was not."
|
Quote:
Khoury contends that ChatGPT in its current form is a risk, which isn't to say there are no valid uses for an erratic, underperforming AI helper. "We have actually already seen students use this, and programmers will use this in the wild," he said. "So having a tool that generates insecure code is really dangerous. We need to make students aware that if code is generated with this type of tool, it very well might be insecure."
|
https://www.theregister.com/2023/04/...insecure_code/
This was on 3.5, but serves as a good warning. Hopefully we don't have too many people making insecure apps handling private data and payment information.
|
|
|