Matches in SemOpenAlex for { <https://semopenalex.org/work/W2907964905> ?p ?o ?g. }
- W2907964905 abstract "Stack Overflow (SO) is the most popular online Q&A site for developers to share their expertise in solving programming issues. Given multiple answers to certain questions, developers may take the accepted answer, the answer from a person with high reputation, or the one frequently suggested. However, researchers recently observed exploitable security vulnerabilities in popular SO answers. This observation inspires us to explore the following questions: How much can we trust the security implementation suggestions on SO? If suggested answers are vulnerable, can developers rely on the community's dynamics to infer the vulnerability and identify a secure counterpart? To answer these highly important questions, we conducted a study on SO posts by contrasting secure and insecure advices with the community-given content evaluation. We investigated whether SO incentive mechanism is effective in improving security properties of distributed code examples. Moreover, we also traced duplicated answers to assess whether the community behavior facilitates propagation of secure and insecure code suggestions. We compiled 953 different groups of similar security-related code examples and labeled their security, identifying 785 secure answer posts and 644 insecure ones. Compared with secure suggestions, insecure ones had higher view counts (36,508 vs. 18,713), received a higher score (14 vs. 5), and had significantly more duplicates (3.8 vs. 3.0) on average. 34% of the posts provided by highly reputable so-called trusted users were insecure. Our findings show that there are lots of insecure snippets on SO, while the community-given feedback does not allow differentiating secure from insecure choices. Moreover, the reputation mechanism fails in indicating trustworthy users with respect to security questions, ultimately leaving other users wandering around alone in a software security minefield." @default.
- W2907964905 created "2019-01-11" @default.
- W2907964905 creator A5014224000 @default.
- W2907964905 creator A5062477648 @default.
- W2907964905 creator A5063714878 @default.
- W2907964905 creator A5068740569 @default.
- W2907964905 creator A5070152860 @default.
- W2907964905 date "2019-05-01" @default.
- W2907964905 modified "2023-09-24" @default.
- W2907964905 title "How Reliable is the Crowdsourced Knowledge of Security Implementation?" @default.
- W2907964905 cites W1517949462 @default.
- W2907964905 cites W171626818 @default.
- W2907964905 cites W1814707006 @default.
- W2907964905 cites W1974828111 @default.
- W2907964905 cites W1985408088 @default.
- W2907964905 cites W1990762361 @default.
- W2907964905 cites W2008810193 @default.
- W2907964905 cites W2025895610 @default.
- W2907964905 cites W2056894403 @default.
- W2907964905 cites W2061604051 @default.
- W2907964905 cites W2087093271 @default.
- W2907964905 cites W2092115639 @default.
- W2907964905 cites W2099769844 @default.
- W2907964905 cites W2103370348 @default.
- W2907964905 cites W2115130131 @default.
- W2907964905 cites W2138110817 @default.
- W2907964905 cites W2138756793 @default.
- W2907964905 cites W2145994642 @default.
- W2907964905 cites W2248175634 @default.
- W2907964905 cites W2291627366 @default.
- W2907964905 cites W2296215101 @default.
- W2907964905 cites W2357927175 @default.
- W2907964905 cites W2401290433 @default.
- W2907964905 cites W2511044583 @default.
- W2907964905 cites W2511548333 @default.
- W2907964905 cites W2545778708 @default.
- W2907964905 cites W2558608738 @default.
- W2907964905 cites W2559935471 @default.
- W2907964905 cites W2598817001 @default.
- W2907964905 cites W2604420197 @default.
- W2907964905 cites W2610548325 @default.
- W2907964905 cites W2634106992 @default.
- W2907964905 cites W2759023773 @default.
- W2907964905 cites W2765671202 @default.
- W2907964905 cites W2794992746 @default.
- W2907964905 cites W2807909733 @default.
- W2907964905 cites W2964144088 @default.
- W2907964905 doi "https://doi.org/10.1109/icse.2019.00065" @default.
- W2907964905 hasPublicationYear "2019" @default.
- W2907964905 type Work @default.
- W2907964905 sameAs 2907964905 @default.
- W2907964905 citedByCount "37" @default.
- W2907964905 countsByYear W29079649052019 @default.
- W2907964905 countsByYear W29079649052020 @default.
- W2907964905 countsByYear W29079649052021 @default.
- W2907964905 countsByYear W29079649052022 @default.
- W2907964905 countsByYear W29079649052023 @default.
- W2907964905 crossrefType "proceedings-article" @default.
- W2907964905 hasAuthorship W2907964905A5014224000 @default.
- W2907964905 hasAuthorship W2907964905A5062477648 @default.
- W2907964905 hasAuthorship W2907964905A5063714878 @default.
- W2907964905 hasAuthorship W2907964905A5068740569 @default.
- W2907964905 hasAuthorship W2907964905A5070152860 @default.
- W2907964905 hasBestOaLocation W29079649052 @default.
- W2907964905 hasConcept C108827166 @default.
- W2907964905 hasConcept C136764020 @default.
- W2907964905 hasConcept C162324750 @default.
- W2907964905 hasConcept C175444787 @default.
- W2907964905 hasConcept C177264268 @default.
- W2907964905 hasConcept C17744445 @default.
- W2907964905 hasConcept C199360897 @default.
- W2907964905 hasConcept C199539241 @default.
- W2907964905 hasConcept C2776760102 @default.
- W2907964905 hasConcept C2778062554 @default.
- W2907964905 hasConcept C29122968 @default.
- W2907964905 hasConcept C3019144022 @default.
- W2907964905 hasConcept C38652104 @default.
- W2907964905 hasConcept C41008148 @default.
- W2907964905 hasConcept C48798503 @default.
- W2907964905 hasConcept C95713431 @default.
- W2907964905 hasConceptScore W2907964905C108827166 @default.
- W2907964905 hasConceptScore W2907964905C136764020 @default.
- W2907964905 hasConceptScore W2907964905C162324750 @default.
- W2907964905 hasConceptScore W2907964905C175444787 @default.
- W2907964905 hasConceptScore W2907964905C177264268 @default.
- W2907964905 hasConceptScore W2907964905C17744445 @default.
- W2907964905 hasConceptScore W2907964905C199360897 @default.
- W2907964905 hasConceptScore W2907964905C199539241 @default.
- W2907964905 hasConceptScore W2907964905C2776760102 @default.
- W2907964905 hasConceptScore W2907964905C2778062554 @default.
- W2907964905 hasConceptScore W2907964905C29122968 @default.
- W2907964905 hasConceptScore W2907964905C3019144022 @default.
- W2907964905 hasConceptScore W2907964905C38652104 @default.
- W2907964905 hasConceptScore W2907964905C41008148 @default.
- W2907964905 hasConceptScore W2907964905C48798503 @default.
- W2907964905 hasConceptScore W2907964905C95713431 @default.
- W2907964905 hasLocation W29079649051 @default.
- W2907964905 hasLocation W29079649052 @default.
- W2907964905 hasLocation W29079649053 @default.
- W2907964905 hasOpenAccess W2907964905 @default.