• Home
  • Search
  • Fortifying Codebases: Secure Code Generation and Vulnerability Assessment with LLMs
  • https://doi.org/10.52783/jisem.v10i40s.7541Copy DOI Icon

Fortifying Codebases: Secure Code Generation and Vulnerability Assessment with LLMs

Show More
  • Abstract
  • Literature Map
  • Similar Papers
Abstract

Android apps are essential to contemporary existence, driving mission-critical industries such as government, finance, and healthcare. Yet, their prevalence exposes them to security risks, and their exposure to vulnerabilities represents serious threats to confidential data and mission-critical services. Identification and elimination of these vulnerabilities at the development stage are important since remediation after deployment is expensive and more difficult. Static analysis provides a proactive solution by analyzing code for vulnerabilities without running it, allowing developers to detect and correct security flaws early. This project suggests an end-to-end framework for static analysis of Android apps to identify and prevent vulnerabilities. The framework combines manual and automated code reviews, configuration analysis, and third-party dependency checks. Major aspects include source code review for insecure code practices, tool-based automated vulnerability detection (e.g., MobSF, SonarQube, Android Lint), and comprehensive analysis of configuration files (e.g., AndroidManifest.xml, build.gradle) and dependencies. Detected vulnerabilities are documented, ranked, and resolved through direct remediation recommendations to have a secure app. The solution strengthens application security by enabling early vulnerability discovery, promoting secure coding, and increasing developer awareness of frequent security pitfalls. The framework provides a common and scalable way to protect Android apps to ensure they satisfy a critical infrastructure sectors’ security requirements.

Similar Papers
  • Single Book

ESSENTIAL SECURITY PRACTICES FOR FORTIFYING MOBILE APPS

  • Jan 01, 2024
  • Venkat Nutalapati
  • Conference Article
  • Citations29

How Maintainability Issues of Android Apps Evolve

  • Sep 01, 2018
  • Ivano Malavolta +4
  • Conference Article
  • Citations2

Security Apps under the Looking Glass: An Empirical Analysis of Android Security Apps

  • Nov 16, 2020
  • Weixian Yao +6
  • Conference Article
  • Citations154

CiD: automating the detection of API-related compatibility issues in Android apps

  • Jul 12, 2018
  • Li Li +3
  • Research Article
  • Citations4

Mission-Critical Services in 4G/5G and Beyond: Standardization, Key Challenges, and Future Perspectives.

  • Aug 19, 2025
  • Sensors (Basel, Switzerland)
  • Florin Rastoceanu +5
  • PDF
  • Research Article
  • Citations2

Secure Software Engineering: A Knowledge Modeling based Approach for Inferring Association between Source Code and Design Artifacts

  • Jan 01, 2020
  • International Journal of Advanced Computer Science and Applications
  • Chaman Wijesiriwardana +4
  • Book Chapter

Runtime Analysis and Instrumentation for Securing Software

  • Jan 01, 2010
  • R Sekar
  • Research Article
  • Citations2

DEVELOPMENT OF SECURE CONTAINERIZED APPLICATIONS WITH A MICROSERVICES ARCHITECTURE

  • Jan 01, 2023
  • Cybersecurity: Education, Science, Technique
  • Svitlana Spasiteleva +3
  • Book Chapter

Chapter 3 - Static Analysis

  • Jan 01, 2016
  • Automated Security Analysis of Android and iOS Applications with Mobile Security Framework
  • Ajin Abraham
  • Research Article

SECURE CODE REVIEW WITH AI: ENHANCING STATIC AND DYNAMIC ANALYSIS

  • Jan 01, 2025
  • International Journal for Research Trends and Innovation
  • Ilakiya Ulaganathan
  • Research Article
  • Citations1

ARAP: Demystifying Anti Runtime Analysis Code in Android Apps

  • Jan 01, 2025
  • IEEE Transactions on Software Engineering
  • Dewen Suo +5
  • Conference Article
  • Citations20

Fix-it: An extensible code auto-fix component in Review Bot

  • Sep 01, 2013
  • Vipin Balachandran
  • Conference Article
  • Citations5

Identification of the Impacts of Code Changes on the Security of Software

  • Jul 01, 2019
  • Lotfi Ben Othmane +2
  • Research Article
  • Citations16

Security assurance of MongoDB in singularity LXCs: an elastic and convenient testbed using Linux containers to explore vulnerabilities

  • Jul 25, 2020
  • Cluster Computing
  • Akalanka Mailewa Dissanayaka +3
  • Research Article
  • Citations120

Detecting Cryptomining Malware: a Deep Learning Approach for Static and Dynamic Analysis

  • Jan 21, 2020
  • Journal of Grid Computing
  • Hamid Darabian +6
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.