Direkt zum Inhalt

Owner only: item control page
Glas, Magdalena ; Nirschl, Christoph ; Lanyado, Bar ; van Niekerk, Johan

Insecure by design? A human-centric security perspective on AI-assisted software development

Glas, Magdalena , Nirschl, Christoph, Lanyado, Bar and van Niekerk, Johan (2026) Insecure by design? A human-centric security perspective on AI-assisted software development. Computers & Security 164, p. 104842.

Date of publication of this fulltext: 03 Feb 2026 07:00
Article
DOI to cite this document: 10.5283/epub.78556


Abstract

Generative artificial intelligence (AI) tools are increasingly used in software development, improving the efficiency of software developers. However, this adoption introduces notable security challenges. AI/generated code is not secure by default, as it is often based on large-scale training data that includes open-source code of varying quality and trustworthiness. Developers using these tools ...

Generative artificial intelligence (AI) tools are increasingly used in software development, improving the efficiency of software developers. However, this adoption introduces notable security challenges. AI/generated code is not secure by default, as it is often based on large-scale training data that includes open-source code of varying quality and trustworthiness. Developers using these tools may be unaware of the associated risks or may place excessive trust in the security of the output. This briefing paper outlines the key security risks associated with generative AI and offers human-centered strategies for mitigation. Since these risks arise not only from how generative AI models are built but also from how humans interact with them, we adopt a human-centric perspective. To this end, we provide recommendations for individuals, organizations, and educators to help harness the potential of generative AI in software development while effectively managing the associated security risks.



Involved Institutions


Details

Item typeArticle
Journal or Publication TitleComputers & Security
Publisher:Elsevier
Open Access Type:DEAL (Elsevier)
Volume:164
Page Range:p. 104842
Date23 January 2026
InstitutionsBusiness, Economics and Information Systems > Institut für Wirtschaftsinformatik > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul)
Informatics and Data Science > Department Information Systems > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul)
Identification Number
ValueType
10.1016/j.cose.2026.104842DOI
KeywordsArtificial intelligence, Software development, AI-assistance, Security, Coding
Dewey Decimal Classification000 Computer science, information & general works > 004 Computer science
300 Social sciences > 330 Economics
StatusPublished
RefereedYes, this version has been refereed
Created at the University of RegensburgPartially
URN of the UB Regensburgurn:nbn:de:bvb:355-epub-785566
Item ID78556

Export bibliographical data

Owner only: item control page

nach oben