{"id":"https://openalex.org/W4406237077","doi":"https://doi.org/10.1007/978-3-031-72781-8_21","title":"Where Do Developers Admit their Security-Related Concerns?","display_name":"Where Do Developers Admit their Security-Related Concerns?","publication_year":2025,"publication_date":"2025-01-01","ids":{"openalex":"https://openalex.org/W4406237077","doi":"https://doi.org/10.1007/978-3-031-72781-8_21"},"language":"en","primary_location":{"id":"doi:10.1007/978-3-031-72781-8_21","is_oa":true,"landing_page_url":"https://doi.org/10.1007/978-3-031-72781-8_21","pdf_url":"https://link.springer.com/content/pdf/10.1007/978-3-031-72781-8_21.pdf","source":{"id":"https://openalex.org/S4210177767","display_name":"Lecture notes in business information processing","issn_l":"1865-1348","issn":["1865-1348","1865-1356"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Business Information Processing","raw_type":"book-chapter"},"type":"book-chapter","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://link.springer.com/content/pdf/10.1007/978-3-031-72781-8_21.pdf","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5063211230","display_name":"Moritz Mock","orcid":"https://orcid.org/0009-0009-3156-6211"},"institutions":[{"id":"https://openalex.org/I171543936","display_name":"Free University of Bozen-Bolzano","ror":"https://ror.org/012ajp527","country_code":"IT","type":"education","lineage":["https://openalex.org/I171543936"]}],"countries":["IT"],"is_corresponding":true,"raw_author_name":"Moritz Mock","raw_affiliation_strings":["Free University Bozen-Bolzano, Bolzano, Italy"],"affiliations":[{"raw_affiliation_string":"Free University Bozen-Bolzano, Bolzano, Italy","institution_ids":["https://openalex.org/I171543936"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5098724358","display_name":"Thomas Forrer","orcid":null},"institutions":[{"id":"https://openalex.org/I4210091033","display_name":"Ospedale di Bolzano","ror":"https://ror.org/00cmk4n56","country_code":"IT","type":"healthcare","lineage":["https://openalex.org/I4210091033"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Thomas Forrer","raw_affiliation_strings":["R&D Department, W\u00fcrth Phoenix, Bolzano, Italy"],"affiliations":[{"raw_affiliation_string":"R&D Department, W\u00fcrth Phoenix, Bolzano, Italy","institution_ids":["https://openalex.org/I4210091033"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5014354355","display_name":"Barbara Russo","orcid":"https://orcid.org/0000-0003-3737-9264"},"institutions":[{"id":"https://openalex.org/I171543936","display_name":"Free University of Bozen-Bolzano","ror":"https://ror.org/012ajp527","country_code":"IT","type":"education","lineage":["https://openalex.org/I171543936"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Barbara Russo","raw_affiliation_strings":["Free University Bozen-Bolzano, Bolzano, Italy"],"affiliations":[{"raw_affiliation_string":"Free University Bozen-Bolzano, Bolzano, Italy","institution_ids":["https://openalex.org/I171543936"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5063211230"],"corresponding_institution_ids":["https://openalex.org/I171543936"],"apc_list":null,"apc_paid":null,"fwci":10.8878,"has_fulltext":true,"cited_by_count":2,"citation_normalized_percentile":{"value":0.96799893,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":95,"max":96},"biblio":{"volume":null,"issue":null,"first_page":"189","last_page":"195"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9976999759674072,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9958999752998352,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4663136899471283},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.3858473300933838},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.36571788787841797}],"concepts":[{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4663136899471283},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.3858473300933838},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.36571788787841797}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1007/978-3-031-72781-8_21","is_oa":true,"landing_page_url":"https://doi.org/10.1007/978-3-031-72781-8_21","pdf_url":"https://link.springer.com/content/pdf/10.1007/978-3-031-72781-8_21.pdf","source":{"id":"https://openalex.org/S4210177767","display_name":"Lecture notes in business information processing","issn_l":"1865-1348","issn":["1865-1348","1865-1356"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Business Information Processing","raw_type":"book-chapter"},{"id":"pmh:oai:unibz.it:11334021160001241","is_oa":true,"landing_page_url":"https://bia.unibz.it/esploro/outputs/conferenceProceeding/Where-do-Developers-Admit-their-Security-Related/991006967506601241","pdf_url":null,"source":{"id":"https://openalex.org/S4210197018","display_name":"View","issn_l":"2688-268X","issn":["2688-268X","2688-3988"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310320595","host_organization_name":"Wiley","host_organization_lineage":["https://openalex.org/P4310320595"],"host_organization_lineage_names":["Wiley"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Conference Proceedings"}],"best_oa_location":{"id":"doi:10.1007/978-3-031-72781-8_21","is_oa":true,"landing_page_url":"https://doi.org/10.1007/978-3-031-72781-8_21","pdf_url":"https://link.springer.com/content/pdf/10.1007/978-3-031-72781-8_21.pdf","source":{"id":"https://openalex.org/S4210177767","display_name":"Lecture notes in business information processing","issn_l":"1865-1348","issn":["1865-1348","1865-1356"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Business Information Processing","raw_type":"book-chapter"},"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320335322","display_name":"European Regional Development Fund","ror":"https://ror.org/00k4n6c32"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4406237077.pdf","grobid_xml":"https://content.openalex.org/works/W4406237077.grobid-xml"},"referenced_works_count":10,"referenced_works":["https://openalex.org/W2395122565","https://openalex.org/W2899407111","https://openalex.org/W2998678832","https://openalex.org/W3185244049","https://openalex.org/W3217134235","https://openalex.org/W4229003063","https://openalex.org/W4365813074","https://openalex.org/W4389224635","https://openalex.org/W4391212702","https://openalex.org/W4403537030"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W2390279801","https://openalex.org/W4391913857","https://openalex.org/W2358668433","https://openalex.org/W4396701345","https://openalex.org/W2376932109","https://openalex.org/W2001405890","https://openalex.org/W4396696052"],"abstract_inverted_index":{"Abstract":[0],"Developers":[1],"use":[2],"different":[3,54],"means":[4],"to":[5,69,100,128,137,148],"document":[6,101],"the":[7,23,115,117,121,141],"security":[8,75,102,150],"concerns":[9,103],"of":[10,14,16,33,56,145],"their":[11,74],"code.":[12],"Because":[13],"all":[15],"these":[17],"opportunities,":[18],"they":[19,124],"may":[20,29],"forget":[21],"where":[22,71],"information":[24],"is":[25],"stored,":[26],"or":[27,143],"others":[28],"not":[30,47],"be":[31],"aware":[32],"it,":[34],"and":[35,91,108],"leave":[36],"it":[37,43],"unmaintained":[38],"for":[39],"so":[40],"long":[41],"that":[42,97,114],"becomes":[44],"obsolete,":[45],"if":[46],"useless.":[48],"In":[49,77],"this":[50],"work,":[51],"we":[52,79,95,133],"analyzed":[53],"sources":[55],"code":[57,87,106],"documentation":[58],"from":[59,85],"four":[60],"large-scale,":[61],"real-world,":[62],"open-source":[63],"projects":[64],"in":[65,104],"an":[66],"industrial":[67],"setting":[68],"understand":[70],"developers":[72,98],"report":[73],"concerns.":[76],"particular,":[78],"manually":[80],"inspected":[81],"2.559":[82],"instances":[83],"taken":[84],"source":[86,105],"comments,":[88],"commit":[89],"messages,":[90],"issue":[92,109],"trackers.":[93,110],"Overall,":[94],"found":[96,113],"prefer":[99],"comments":[107,118,146],"We":[111],"also":[112],"longer":[116],"stay":[119],"unfixed,":[120],"more":[122],"likely":[123],"remain":[125],"unfixed.":[126],"Thus,":[127],"create":[129],"awareness":[130],"among":[131],"developers,":[132],"implemented":[134],"a":[135,149],"pipeline":[136],"remind":[138],"them":[139],"about":[140],"introduction":[142],"removal":[144],"pointing":[147],"problem.":[151]},"counts_by_year":[{"year":2025,"cited_by_count":2}],"updated_date":"2026-03-20T23:20:44.827607","created_date":"2025-10-10T00:00:00"}
