| Published Version Download ( PDF | 2MB) | License: Creative Commons Attribution 4.0 |
Insecure by design? A human-centric security perspective on AI-assisted software development
Glas, Magdalena
, Nirschl, Christoph, Lanyado, Bar and van Niekerk, Johan
(2026)
Insecure by design? A human-centric security perspective on AI-assisted software development.
Computers & Security 164, p. 104842.
Date of publication of this fulltext: 03 Feb 2026 07:00
Article
DOI to cite this document: 10.5283/epub.78556
Abstract
Generative artificial intelligence (AI) tools are increasingly used in software development, improving the efficiency of software developers. However, this adoption introduces notable security challenges. AI/generated code is not secure by default, as it is often based on large-scale training data that includes open-source code of varying quality and trustworthiness. Developers using these tools ...
Generative artificial intelligence (AI) tools are increasingly used in software development, improving the efficiency of software developers. However, this adoption introduces notable security challenges. AI/generated code is not secure by default, as it is often based on large-scale training data that includes open-source code of varying quality and trustworthiness. Developers using these tools may be unaware of the associated risks or may place excessive trust in the security of the output. This briefing paper outlines the key security risks associated with generative AI and offers human-centered strategies for mitigation. Since these risks arise not only from how generative AI models are built but also from how humans interact with them, we adopt a human-centric perspective. To this end, we provide recommendations for individuals, organizations, and educators to help harness the potential of generative AI in software development while effectively managing the associated security risks.
Alternative links to fulltext
Involved Institutions
Details
| Item type | Article | ||||
| Journal or Publication Title | Computers & Security | ||||
| Publisher: | Elsevier | ||||
|---|---|---|---|---|---|
| Open Access Type: | DEAL (Elsevier) | ||||
| Volume: | 164 | ||||
| Page Range: | p. 104842 | ||||
| Date | 23 January 2026 | ||||
| Institutions | Business, Economics and Information Systems > Institut für Wirtschaftsinformatik > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul) Informatics and Data Science > Department Information Systems > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul) | ||||
| Identification Number |
| ||||
| Keywords | Artificial intelligence, Software development, AI-assistance, Security, Coding | ||||
| Dewey Decimal Classification | 000 Computer science, information & general works > 004 Computer science 300 Social sciences > 330 Economics | ||||
| Status | Published | ||||
| Refereed | Yes, this version has been refereed | ||||
| Created at the University of Regensburg | Partially | ||||
| URN of the UB Regensburg | urn:nbn:de:bvb:355-epub-785566 | ||||
| Item ID | 78556 |
Download Statistics
Download Statistics