{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,20]],"date-time":"2026-07-20T08:02:10Z","timestamp":1784534530074,"version":"3.55.0"},"publisher-location":"Cham","reference-count":34,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783032332592","type":"print"},{"value":"9783032332608","type":"electronic"}],"license":[{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-3-032-33260-8_16","type":"book-chapter","created":{"date-parts":[[2026,7,20]],"date-time":"2026-07-20T07:07:03Z","timestamp":1784531223000},"page":"305-324","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Silent Fallbacks and\u00a0Semantic Gaps: Evaluating the\u00a0Functional Soundness of\u00a0LLM-Generated Linux Password Policies"],"prefix":"10.1007","author":[{"given":"Vivek","family":"Vaidya","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Aditya","family":"Patwardhan","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Sudiksha","family":"Das","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Ashish","family":"Kundu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2026,7,21]]},"reference":[{"key":"16_CR1","unstructured":"Liu, A., et. al. DeepSeek-V3 Technical Report (2025). arXiv: 2412.19437\u00a0[cs.CL]. https:\/\/arxiv.org\/abs\/2412.19437"},{"key":"16_CR2","unstructured":"Brown, T.B., et al.: Language Models are Few-Shot Learners (2020). arXiv: 2005.14165\u00a0[cs.CL]. https:\/\/arxiv.org\/abs\/2005.14165"},{"key":"16_CR3","unstructured":"Center for Internet Security (CIS). CIS Password Policy Guide: Passphrases, Monitoring, and More. Accessed: 2025 Mar 30 (2023). https:\/\/learn.cisecurity.org\/cis-password-policy-guide-passphrases-monitoring-and-more"},{"key":"16_CR4","unstructured":"Dong, Q., et al.: A Survey on In-context Learning. In: arXiv preprint arXiv:2301.00234 (2022). Foundational survey on the mechanics and benefits of ICL"},{"key":"16_CR5","unstructured":"Dubey, A., et al.: The Llama 3 Herd of Models. Official Meta citation for Llama 3 family (2024). https:\/\/arxiv.org\/abs\/2407.21783"},{"key":"16_CR6","unstructured":"Jang, M., et al.: \u2013BECEL: Benchmark for Consistency Evaluation of Language Models. In: Proceedings of the 29th International Conference on Computational Linguistics. Gyeongju, Republic of Korea: International Committee on Computational Linguistics, Oct. 2022, pp. 3680\u20133696 (2022). https:\/\/aclanthology.org\/2022.coling-1.324\/"},{"key":"16_CR7","unstructured":"Jang, M.E., Lukasiewicz, T.: Consistency Analysis of ChatGPT. (2023). arXiv: 2303.06273\u00a0[cs.CL]. https:\/\/arxiv.org\/abs\/2303.06273)"},{"key":"16_CR8","doi-asserted-by":"crossref","unstructured":"Ji, Z., et al.: Survey of hallucination in natural language generation. ACM Comput. Surv. 55(12), 1\u201338 (2023)","DOI":"10.1145\/3571730"},{"key":"16_CR9","unstructured":"Jiang, A.Q., et al.: Mixtral of Experts. In: arXiv preprint arXiv:2401.04088 (2024). Details the Sparse MoE architecture used in many modern models"},{"key":"16_CR10","unstructured":"Khatun, A., Brown, D.G.: TruthEval: a dataset to evaluate llm truthfulness and reliability (2024). arXiv: 2406.01855\u00a0[cs.CL]. https:\/\/arxiv.org\/abs\/2406.01855"},{"key":"16_CR11","unstructured":"Lewis, P., et al.: Retrieval-Augmented Generation for Knowledge-Intensive NLP Tasks (2021). arXiv: 2005.11401\u00a0[cs.CL]. https:\/\/arxiv.org\/abs\/2005.11401"},{"key":"16_CR12","unstructured":"Arch Linux. pwquality.conf(5) \u2014 Arch Manual Pages. Accessed 2026 Feb 24. n.d. https:\/\/man.archlinux.org\/man\/pwquality.conf.5.en"},{"key":"16_CR13","unstructured":"Linux Manual. Default Password Policy in Linux Systems (e.g., PAM, \/etc\/login.defs). Based on standard Linux configurations; no official central documentation (2024)"},{"key":"16_CR14","unstructured":"Mayer Love, F.: SELinux by Example: Using Security Enhanced Linux, Prentice Hall PTR (2006). isbn: 978-0-13-196369-6"},{"key":"16_CR15","doi-asserted-by":"crossref","unstructured":"McDonald, D., et al.: \u201cReducing LLM hallucination using knowledge distillation: a case study with mistral large and mmlu benchmark\u201d. In: Authorea Preprints (2024)","DOI":"10.36227\/techrxiv.171665607.76504195\/v1"},{"key":"16_CR16","unstructured":"NIST. Digital Identity Guidelines: Authentication and Lifecycle Management (SP 800-63B). Accessed 2025 Mar 30 (2020). https:\/\/nvlpubs.nist.gov\/nistpubs\/SpecialPublications\/NIST.SP.800-63b.pdf"},{"key":"16_CR17","doi-asserted-by":"publisher","unstructured":"Patwardhan, A., et al.: Automated consistency analysis of LLMs. In: IEEE 6th International Conference on Trust, Privacy and Security in Intelligent Systems, and Applications (TPS-ISA). Los Alamitos, CA, USA: IEEE Computer Society, Oct. 2024, pp. 118\u2013127 (Oct 2024). https:\/\/doi.org\/10.1109\/TPS-ISA62245.2024.00023. https:\/\/doi.ieeecomputersociety.org\/10.1109\/TPS-ISA62245.2024.00023","DOI":"10.1109\/TPS-ISA62245.2024.00023"},{"key":"16_CR18","doi-asserted-by":"publisher","unstructured":"Saha, D., et al.: Empowering hardware security with LLM: the development of a vulnerable hardware database. In: IEEE International Symposium on Hardware Oriented Security and Trust (HOST). Los Alamitos, CA, USA: IEEE Computer Society, May 2024, pp. 233\u2013243 (May 2024). https:\/\/doi.org\/10.1109\/HOST55342.2024.10545393, https:\/\/doi.ieeecomputersociety.org\/10.1109\/HOST55342.2024.10545393","DOI":"10.1109\/HOST55342.2024.10545393"},{"key":"16_CR19","unstructured":"Schwarz, J., et al.: Hallucination-Resistant Security Planning with a Large Language Model. arXiv preprint arXiv:2602.05279 (2026). Highly relevant recent work on preventing security misconfigurations"},{"key":"16_CR20","unstructured":"Shazeer, N., et al.: Outrageously Large Neural Networks: The Sparsely-Gated Mixture-of-Experts Layer. In: arXiv preprint arXiv:1701.06538 (2017). Seminal paper for MoE architectures"},{"key":"16_CR21","doi-asserted-by":"publisher","unstructured":"Song, S., et al.: POSTER: seccomp profiling with dynamic analysis via ChatGPT-assisted test code generation. In: Proceedings of the 19th ACM Asia Conference on Computer and Communications Security. ASIA CCS \u201924. Singapore, Singapore: Association for Computing Machinery, 2024, pp. 1928\u20131930 (2024). isbn: 9798400704826. https:\/\/doi.org\/10.1145\/3634737.3659426","DOI":"10.1145\/3634737.3659426"},{"key":"16_CR22","unstructured":"Sonune, P., et al.: LMN: A Tool for Generating Machine Enforceable Policies from Natural Language Access Control Rules using LLMs. In: arXiv preprint arXiv:2502.12460 (2025)"},{"key":"16_CR23","unstructured":"Team, G., Anil, R., et. al.: Gemini: A Family of Highly Capable Multimodal Models (2024). arXiv: 2312.11805\u00a0[cs.CL]. https:\/\/arxiv.org\/abs\/2312.11805 (visited on 08\/04\/2024)"},{"key":"16_CR24","unstructured":"OpenAI Team. GPT-4: Generative Pre-trained Transformer. OpenAI API. https:\/\/platform.openai.com\/docs\/models\/gpt-4. 2023. (Visited on 08\/04\/2024)"},{"key":"16_CR25","doi-asserted-by":"publisher","unstructured":"Temoshok, D., et al.: Digital Identity Guidelines: Authentication and Authenticator Management. NIST Special Publication (SP) 800-63B-4. Gaithersburg, MD: National Institute of Standards and Technology (2025). https:\/\/doi.org\/10.6028\/NIST.SP.800-63B-4","DOI":"10.6028\/NIST.SP.800-63B-4"},{"key":"16_CR26","unstructured":"Touvron, H., et al.: LLaMA: Open and Efficient Foundation Language Models (2023). arXiv: 2302.13971[cs.CL]. https:\/\/arxiv.org\/abs\/2302.13971 (visited on 08\/04\/2024)"},{"key":"16_CR27","doi-asserted-by":"crossref","unstructured":"Vaidya, J., Asif, H.: A critical look at AI-generate software: coding with the new AI tools is both irresistible and dangerous. In: IEEE Spectrum 60(7) (2023), 34\u201339 (2023)","DOI":"10.1109\/MSPEC.2023.10177044"},{"key":"16_CR28","unstructured":"Wang, X., et al.: Self-Consistency Improves Chain of Thought Reasoning in Language Models (2023) arXiv: 2203.11171\u00a0[cs.CL]. https:\/\/arxiv.org\/abs\/2203.11171"},{"key":"16_CR29","unstructured":"Wei, J., et al.: Chain-of-Thought Prompting Elicits Reasoning in Large Language Models (2023). arXiv: 2201.11903\u00a0[cs.CL]. https:\/\/arxiv.org\/abs\/2201.11903"},{"key":"16_CR30","unstructured":"BigScience Workshop et al. BLOOM: A 176B-Parameter Open-Access Multilingual Language Model (2023). arXiv: 2211.05100\u00a0[cs.CL]. https:\/\/arxiv.org\/abs\/2211.05100 (visited on 08\/04\/2024)"},{"key":"16_CR31","unstructured":"Ye, S., et al.: FLASK: Fine-grained Language Model Evaluation based on Alignment Skill Sets (2024). arXiv: 2307.10928\u00a0[cs.CL]. https:\/\/arxiv.org\/abs\/2307.10928"},{"key":"16_CR32","unstructured":"Zhang, S., et al.: OPT: Open Pre-trained Transformer Language Models (2022). arXiv: 2205.01068\u00a0[cs.CL]. https:\/\/arxiv.org\/abs\/2205.01068 (visited on 08\/04\/2024)"},{"key":"16_CR33","doi-asserted-by":"publisher","unstructured":"Zhu, H., Gehrmann, C.: AppArmor Profile Generator as a Cloud Service. In: Proceedings of the 11th International Conference on Cloud Computing and Services Science. SciTePress, 2021, pp. 45\u201355 (2021). https:\/\/doi.org\/10.5220\/0010434100450055","DOI":"10.5220\/0010434100450055"},{"key":"16_CR34","doi-asserted-by":"publisher","unstructured":"Zhu, Q.: Multi-model consistency for LLMs\u2019 evaluation. In: International Joint Conference on Neural Networks (IJCNN), pp. 1\u20138. IEEE (2024). https:\/\/doi.org\/10.1109\/IJCNN60899.2024.10651158","DOI":"10.1109\/IJCNN60899.2024.10651158"}],"container-title":["Lecture Notes in Computer Science","Data and Applications Security and Privacy XL"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-032-33260-8_16","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,7,20]],"date-time":"2026-07-20T07:07:11Z","timestamp":1784531231000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-032-33260-8_16"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026]]},"ISBN":["9783032332592","9783032332608"],"references-count":34,"URL":"https:\/\/doi.org\/10.1007\/978-3-032-33260-8_16","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026]]},"assertion":[{"value":"21 July 2026","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"DBSec","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"IFIP Annual Conference on Data and Applications Security and Privacy","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Arlington, VA","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"USA","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2026","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"28 July 2026","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"30 July 2026","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"40","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"dbsec2026","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/dbsec2026.gmu.edu\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}