Matches in SemOpenAlex for { <https://semopenalex.org/work/W2954294409> ?p ?o ?g. }
- W2954294409 abstract "Stack Overflow (SO) is the most popular online Q&A site for developers to share their expertise in solving programming issues. Given multiple answers to certain questions, developers may take the accepted answer, the answer from a person with high reputation, or the one frequently suggested. However, researchers recently observed exploitable security vulnerabilities in popular SO answers. This observation inspires us to explore the following questions: How much can we trust the security implementation suggestions on SO? If suggested answers are vulnerable, can developers rely on the community's dynamics to infer the vulnerability and identify a secure counterpart? To answer these highly important questions, we conducted a study on SO posts by contrasting secure and insecure advices with the community-given content evaluation. We investigated whether SO incentive mechanism is effective in improving security properties of distributed code examples. Moreover, we also traced duplicated answers to assess whether the community behavior facilitates propagation of secure and insecure code suggestions. We compiled 953 different groups of similar security-related code examples and labeled their security, identifying 785 secure answer posts and 644 insecure ones. Compared with secure suggestions, insecure ones had higher view counts (36,508 vs. 18,713), received a higher score (14 vs. 5), and had significantly more duplicates (3.8 vs. 3.0) on average. 34% of the posts provided by highly reputable so-called trusted users were insecure. Our findings show that there are lots of insecure snippets on SO, while the community-given feedback does not allow differentiating secure from insecure choices. Moreover, the reputation mechanism fails in indicating trustworthy users with respect to security questions, ultimately leaving other users wandering around alone in a software security minefield." @default.
- W2954294409 created "2019-07-12" @default.
- W2954294409 creator A5014224000 @default.
- W2954294409 creator A5023471093 @default.
- W2954294409 creator A5063714878 @default.
- W2954294409 creator A5068740569 @default.
- W2954294409 creator A5070152860 @default.
- W2954294409 date "2019-01-04" @default.
- W2954294409 modified "2023-09-23" @default.
- W2954294409 title "How Reliable is the Crowdsourced Knowledge of Security Implementation?" @default.
- W2954294409 cites W1517949462 @default.
- W2954294409 cites W1566773348 @default.
- W2954294409 cites W171626818 @default.
- W2954294409 cites W1974828111 @default.
- W2954294409 cites W1985408088 @default.
- W2954294409 cites W1990762361 @default.
- W2954294409 cites W2008810193 @default.
- W2954294409 cites W2025895610 @default.
- W2954294409 cites W2056894403 @default.
- W2954294409 cites W2061604051 @default.
- W2954294409 cites W2087093271 @default.
- W2954294409 cites W2092115639 @default.
- W2954294409 cites W2099769844 @default.
- W2954294409 cites W2103370348 @default.
- W2954294409 cites W2115130131 @default.
- W2954294409 cites W2138110817 @default.
- W2954294409 cites W2138756793 @default.
- W2954294409 cites W2145994642 @default.
- W2954294409 cites W2248175634 @default.
- W2954294409 cites W2291627366 @default.
- W2954294409 cites W2296215101 @default.
- W2954294409 cites W2357927175 @default.
- W2954294409 cites W2401290433 @default.
- W2954294409 cites W2511044583 @default.
- W2954294409 cites W2511548333 @default.
- W2954294409 cites W2545778708 @default.
- W2954294409 cites W2558608738 @default.
- W2954294409 cites W2559935471 @default.
- W2954294409 cites W2598817001 @default.
- W2954294409 cites W2604420197 @default.
- W2954294409 cites W2610548325 @default.
- W2954294409 cites W2634106992 @default.
- W2954294409 cites W2759023773 @default.
- W2954294409 cites W2765212458 @default.
- W2954294409 cites W2765671202 @default.
- W2954294409 cites W2794992746 @default.
- W2954294409 cites W2952848714 @default.
- W2954294409 cites W2964144088 @default.
- W2954294409 cites W2564544279 @default.
- W2954294409 doi "https://doi.org/10.48550/arxiv.1901.01327" @default.
- W2954294409 hasPublicationYear "2019" @default.
- W2954294409 type Work @default.
- W2954294409 sameAs 2954294409 @default.
- W2954294409 citedByCount "0" @default.
- W2954294409 crossrefType "posted-content" @default.
- W2954294409 hasAuthorship W2954294409A5014224000 @default.
- W2954294409 hasAuthorship W2954294409A5023471093 @default.
- W2954294409 hasAuthorship W2954294409A5063714878 @default.
- W2954294409 hasAuthorship W2954294409A5068740569 @default.
- W2954294409 hasAuthorship W2954294409A5070152860 @default.
- W2954294409 hasBestOaLocation W29542944091 @default.
- W2954294409 hasConcept C108827166 @default.
- W2954294409 hasConcept C136764020 @default.
- W2954294409 hasConcept C162324750 @default.
- W2954294409 hasConcept C175444787 @default.
- W2954294409 hasConcept C177264268 @default.
- W2954294409 hasConcept C17744445 @default.
- W2954294409 hasConcept C199360897 @default.
- W2954294409 hasConcept C199539241 @default.
- W2954294409 hasConcept C2776760102 @default.
- W2954294409 hasConcept C2778062554 @default.
- W2954294409 hasConcept C29122968 @default.
- W2954294409 hasConcept C3019144022 @default.
- W2954294409 hasConcept C38652104 @default.
- W2954294409 hasConcept C41008148 @default.
- W2954294409 hasConcept C48798503 @default.
- W2954294409 hasConcept C95713431 @default.
- W2954294409 hasConceptScore W2954294409C108827166 @default.
- W2954294409 hasConceptScore W2954294409C136764020 @default.
- W2954294409 hasConceptScore W2954294409C162324750 @default.
- W2954294409 hasConceptScore W2954294409C175444787 @default.
- W2954294409 hasConceptScore W2954294409C177264268 @default.
- W2954294409 hasConceptScore W2954294409C17744445 @default.
- W2954294409 hasConceptScore W2954294409C199360897 @default.
- W2954294409 hasConceptScore W2954294409C199539241 @default.
- W2954294409 hasConceptScore W2954294409C2776760102 @default.
- W2954294409 hasConceptScore W2954294409C2778062554 @default.
- W2954294409 hasConceptScore W2954294409C29122968 @default.
- W2954294409 hasConceptScore W2954294409C3019144022 @default.
- W2954294409 hasConceptScore W2954294409C38652104 @default.
- W2954294409 hasConceptScore W2954294409C41008148 @default.
- W2954294409 hasConceptScore W2954294409C48798503 @default.
- W2954294409 hasConceptScore W2954294409C95713431 @default.
- W2954294409 hasLocation W29542944091 @default.
- W2954294409 hasLocation W29542944092 @default.
- W2954294409 hasLocation W29542944093 @default.
- W2954294409 hasOpenAccess W2954294409 @default.
- W2954294409 hasPrimaryLocation W29542944091 @default.
- W2954294409 hasRelatedWork W2224008184 @default.
- W2954294409 hasRelatedWork W2356032477 @default.