An Empirical Study of Security Issues Posted in Open Source Projects

dc.contributor.authorZahedi, Mansooreh
dc.contributor.authorAli Babar, Muhammad
dc.contributor.authorTreude, Christoph
dc.date.accessioned2017-12-28T02:17:36Z
dc.date.available2017-12-28T02:17:36Z
dc.date.issued2018-01-03
dc.description.abstractWhen developers gain thorough understanding and knowledge of software security, they can produce more secure software. This study aims at empirically identifying and understanding the security issues posted on a random sample of GitHub repositories. We tried to understand the presence of security issues and their key themes and topics. We applied a mixed-methods approach, combining topic modeling techniques and qualitative analysis. Our findings have revealed that a) the rate of security-related issues was rather small (approx. 3% of all issues), b) the majority of the security issues were related to identity management and cryptography topics. We present 7 high-level themes of problems that developers face in implementing security features.
dc.format.extent10 pages
dc.identifier.doi10.24251/HICSS.2018.686
dc.identifier.isbn978-0-9981331-1-9
dc.identifier.urihttp://hdl.handle.net/10125/50575
dc.language.isoeng
dc.relation.ispartofProceedings of the 51st Hawaii International Conference on System Sciences
dc.rightsAttribution-NonCommercial-NoDerivatives 4.0 International
dc.rights.urihttps://creativecommons.org/licenses/by-nc-nd/4.0/
dc.subjectCyber Security and Software Assurance
dc.subjectEmpirical Research GitHub Software Security Software Repository Mining Topic Modeling
dc.titleAn Empirical Study of Security Issues Posted in Open Source Projects
dc.typeConference Paper
dc.type.dcmiText

Files

Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
paper0688.pdf
Size:
519.84 KB
Format:
Adobe Portable Document Format