{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2023:5T2NWEO347ZQR4OJKVRLCIW6QR","short_pith_number":"pith:5T2NWEO3","schema_version":"1.0","canonical_sha256":"ecf4db11dbe7f308f1c95562b122de84460b3f7e68a0b1808b67a8bcf88c9c8d","source":{"kind":"arxiv","id":"2312.06227","version":1},"attestation_state":"computed","paper":{"title":"Poisoned ChatGPT Finds Work for Idle Hands: Exploring Developers' Coding Practices with Insecure Suggestions from Poisoned AI Models","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Doowon Kim, Hyoungshick Kim, Kiho Lee, Sanghak Oh, Seonhye Park","submitted_at":"2023-12-11T09:14:42Z","abstract_excerpt":"AI-powered coding assistant tools have revolutionized the software engineering ecosystem. However, prior work has demonstrated that these tools are vulnerable to poisoning attacks. In a poisoning attack, an attacker intentionally injects maliciously crafted insecure code snippets into training datasets to manipulate these tools. The poisoned tools can suggest insecure code to developers, resulting in vulnerabilities in their products that attackers can exploit. However, it is still little understood whether such poisoning attacks against the tools would be practical in real-world settings and "},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2312.06227","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2023-12-11T09:14:42Z","cross_cats_sorted":[],"title_canon_sha256":"cb053b48f88436ad6c971dcbeeeeb946b309504caf56c402b3075340a4b1c24e","abstract_canon_sha256":"459a9650d12e6559850c9894c2cd4948d7113086d5d5c6db786c76ba587ae047"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T07:22:40.844620Z","signature_b64":"BawEUVcPnRkbip4+MlbOlOmtJdbQN40j54TektMdQVwV8WxpuJEXyjIofyDvYCgfvU4GSsbeatWg4yooRJxaBQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"ecf4db11dbe7f308f1c95562b122de84460b3f7e68a0b1808b67a8bcf88c9c8d","last_reissued_at":"2026-07-05T07:22:40.844064Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T07:22:40.844064Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Poisoned ChatGPT Finds Work for Idle Hands: Exploring Developers' Coding Practices with Insecure Suggestions from Poisoned AI Models","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Doowon Kim, Hyoungshick Kim, Kiho Lee, Sanghak Oh, Seonhye Park","submitted_at":"2023-12-11T09:14:42Z","abstract_excerpt":"AI-powered coding assistant tools have revolutionized the software engineering ecosystem. However, prior work has demonstrated that these tools are vulnerable to poisoning attacks. In a poisoning attack, an attacker intentionally injects maliciously crafted insecure code snippets into training datasets to manipulate these tools. The poisoned tools can suggest insecure code to developers, resulting in vulnerabilities in their products that attackers can exploit. However, it is still little understood whether such poisoning attacks against the tools would be practical in real-world settings and "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2312.06227","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2312.06227/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2312.06227","created_at":"2026-07-05T07:22:40.844123+00:00"},{"alias_kind":"arxiv_version","alias_value":"2312.06227v1","created_at":"2026-07-05T07:22:40.844123+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2312.06227","created_at":"2026-07-05T07:22:40.844123+00:00"},{"alias_kind":"pith_short_12","alias_value":"5T2NWEO347ZQ","created_at":"2026-07-05T07:22:40.844123+00:00"},{"alias_kind":"pith_short_16","alias_value":"5T2NWEO347ZQR4OJ","created_at":"2026-07-05T07:22:40.844123+00:00"},{"alias_kind":"pith_short_8","alias_value":"5T2NWEO3","created_at":"2026-07-05T07:22:40.844123+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2410.01026","citing_title":"Understanding the Human-LLM Dynamic: A Literature Survey of LLM Use in Programming Tasks","ref_index":64,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/5T2NWEO347ZQR4OJKVRLCIW6QR","json":"https://pith.science/pith/5T2NWEO347ZQR4OJKVRLCIW6QR.json","graph_json":"https://pith.science/api/pith-number/5T2NWEO347ZQR4OJKVRLCIW6QR/graph.json","events_json":"https://pith.science/api/pith-number/5T2NWEO347ZQR4OJKVRLCIW6QR/events.json","paper":"https://pith.science/paper/5T2NWEO3"},"agent_actions":{"view_html":"https://pith.science/pith/5T2NWEO347ZQR4OJKVRLCIW6QR","download_json":"https://pith.science/pith/5T2NWEO347ZQR4OJKVRLCIW6QR.json","view_paper":"https://pith.science/paper/5T2NWEO3","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2312.06227&json=true","fetch_graph":"https://pith.science/api/pith-number/5T2NWEO347ZQR4OJKVRLCIW6QR/graph.json","fetch_events":"https://pith.science/api/pith-number/5T2NWEO347ZQR4OJKVRLCIW6QR/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/5T2NWEO347ZQR4OJKVRLCIW6QR/action/timestamp_anchor","attest_storage":"https://pith.science/pith/5T2NWEO347ZQR4OJKVRLCIW6QR/action/storage_attestation","attest_author":"https://pith.science/pith/5T2NWEO347ZQR4OJKVRLCIW6QR/action/author_attestation","sign_citation":"https://pith.science/pith/5T2NWEO347ZQR4OJKVRLCIW6QR/action/citation_signature","submit_replication":"https://pith.science/pith/5T2NWEO347ZQR4OJKVRLCIW6QR/action/replication_record"}},"created_at":"2026-07-05T07:22:40.844123+00:00","updated_at":"2026-07-05T07:22:40.844123+00:00"}