ROBERTA DE LUCA

I am a Ph.D. Student in Information Technologies and Electrical Engineering (ITEE) and member of Dependable and Secure Software Engineering and Real-Time Systems (DESSERT) group at the University of Naples Federico II. My research activity focuses on the Trustworthiness of AI Code Generators.

Publications

DeVAIC: A tool for security assessment of AI-generated code

Information and Software Technology (IST), 2025

With the rise of AI code generators transforming software development, ensuring the security of AI-generated code has become more crucial than ever. Traditional static analysis tools often fall short when evaluating incomplete code snippets produced by these AI models, leaving potential vulnerabilities undetected. To address this gap, we've developed DeVAIC, a lightweight and efficient tool designed to detect vulnerabilities in AI-generated Python code, even when the code isn't complete. We used DeVAIC to detect vulnerabilities in the code generated by well-known public AI-code generators. Our experiments show that DeVAIC outperforms state-of-the-art static analysis tools in identifying vulnerabilities while maintaining low computational times. The paper detailing this work has just been accepted for publication in the Information and Software Technology journal! Let's continue to make AI-generated code more secure and trustworthy!

Education

[Ongoing] Ph.D. in Information Technology and Electrical Engineering (ITEE)

University of Naples Federico II, Naples, Italy 2023 - 2026

Securing Automated Software Development: Trustworthiness of AI Code Generators.

Master's in Computer Engineering

University of Naples Federico II, Naples, Italy 2021 - 2023

Specialized in cybersecurity.

Thesis title: "Software Vulnerability Analysis for AI-generated code."

110/110 cum laude

Courses included:

  • Network Security
  • Software Security
  • System Security
  • Statistical analysis, Performance, Reliability, and Safety in Processing Systems

Bachelor's in Computer Engineering

University of Naples Federico II, Naples, Italy 2018 - 2021

Focused on programming, algorithms, and the fundamentals of software engineering.

Thesis title: "Study of input validation vulnerabilities in web applications and related countermeasures."

110/110 cum laude

Courses included:

  • Software Engineering
  • Operating Systems
  • Database
  • Artificial Intelligence
  • Computer Networks