{"id":"https://openalex.org/W2042752612","doi":"https://doi.org/10.1145/2663887.2663905","title":"Comparative Evaluation of Architectural and Code-Level Approaches for Finding Security Vulnerabilities","display_name":"Comparative Evaluation of Architectural and Code-Level Approaches for Finding Security Vulnerabilities","publication_year":2014,"publication_date":"2014-11-07","ids":{"openalex":"https://openalex.org/W2042752612","doi":"https://doi.org/10.1145/2663887.2663905","mag":"2042752612"},"language":"en","primary_location":{"id":"doi:10.1145/2663887.2663905","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2663887.2663905","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2014 ACM Workshop on Security Information Workers","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5011491285","display_name":"Radu Vanciu","orcid":null},"institutions":[{"id":"https://openalex.org/I185443292","display_name":"Wayne State University","ror":"https://ror.org/01070mq45","country_code":"US","type":"education","lineage":["https://openalex.org/I185443292"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Radu Vanciu","raw_affiliation_strings":["Wayne State University, Detroit, MI, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Wayne State University, Detroit, MI, USA","institution_ids":["https://openalex.org/I185443292"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5040086551","display_name":"Ebrahim Khalaj","orcid":null},"institutions":[{"id":"https://openalex.org/I185443292","display_name":"Wayne State University","ror":"https://ror.org/01070mq45","country_code":"US","type":"education","lineage":["https://openalex.org/I185443292"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Ebrahim Khalaj","raw_affiliation_strings":["Wayne State University, Detroit, MI, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Wayne State University, Detroit, MI, USA","institution_ids":["https://openalex.org/I185443292"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5072986207","display_name":"Marwan Abi-Antoun","orcid":null},"institutions":[{"id":"https://openalex.org/I185443292","display_name":"Wayne State University","ror":"https://ror.org/01070mq45","country_code":"US","type":"education","lineage":["https://openalex.org/I185443292"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Marwan Abi-Antoun","raw_affiliation_strings":["Wayne State University, Detroit, MI, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Wayne State University, Detroit, MI, USA","institution_ids":["https://openalex.org/I185443292"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.5897,"has_fulltext":false,"cited_by_count":4,"citation_normalized_percentile":{"value":0.67349735,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":94},"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9986000061035156,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9980999827384949,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7891985177993774},{"id":"https://openalex.org/keywords/code","display_name":"Code (set theory)","score":0.6628256440162659},{"id":"https://openalex.org/keywords/representation","display_name":"Representation (politics)","score":0.595436692237854},{"id":"https://openalex.org/keywords/architecture","display_name":"Architecture","score":0.5129682421684265},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4572460651397705},{"id":"https://openalex.org/keywords/reading","display_name":"Reading (process)","score":0.4335535168647766},{"id":"https://openalex.org/keywords/enterprise-information-security-architecture","display_name":"Enterprise information security architecture","score":0.4166529178619385},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.40581822395324707},{"id":"https://openalex.org/keywords/linguistics","display_name":"Linguistics","score":0.06401914358139038}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7891985177993774},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.6628256440162659},{"id":"https://openalex.org/C2776359362","wikidata":"https://www.wikidata.org/wiki/Q2145286","display_name":"Representation (politics)","level":3,"score":0.595436692237854},{"id":"https://openalex.org/C123657996","wikidata":"https://www.wikidata.org/wiki/Q12271","display_name":"Architecture","level":2,"score":0.5129682421684265},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4572460651397705},{"id":"https://openalex.org/C554936623","wikidata":"https://www.wikidata.org/wiki/Q199657","display_name":"Reading (process)","level":2,"score":0.4335535168647766},{"id":"https://openalex.org/C31139447","wikidata":"https://www.wikidata.org/wiki/Q5380386","display_name":"Enterprise information security architecture","level":2,"score":0.4166529178619385},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.40581822395324707},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.06401914358139038},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C94625758","wikidata":"https://www.wikidata.org/wiki/Q7163","display_name":"Politics","level":2,"score":0.0},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.0},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.0},{"id":"https://openalex.org/C142362112","wikidata":"https://www.wikidata.org/wiki/Q735","display_name":"Art","level":0,"score":0.0},{"id":"https://openalex.org/C153349607","wikidata":"https://www.wikidata.org/wiki/Q36649","display_name":"Visual arts","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/2663887.2663905","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2663887.2663905","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2014 ACM Workshop on Security Information Workers","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.550000011920929}],"awards":[{"id":"https://openalex.org/G3772943231","display_name":null,"funder_award_id":"W911NF-09-1-0273","funder_id":"https://openalex.org/F4320338281","funder_display_name":"Army Research Office"}],"funders":[{"id":"https://openalex.org/F4320338281","display_name":"Army Research Office","ror":"https://ror.org/05epdh915"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":23,"referenced_works":["https://openalex.org/W2508546","https://openalex.org/W81879861","https://openalex.org/W626067554","https://openalex.org/W1414322427","https://openalex.org/W1505465226","https://openalex.org/W1614825945","https://openalex.org/W1915915253","https://openalex.org/W1963971515","https://openalex.org/W2005397165","https://openalex.org/W2015004885","https://openalex.org/W2034527657","https://openalex.org/W2039122942","https://openalex.org/W2047590718","https://openalex.org/W2113115074","https://openalex.org/W2125011234","https://openalex.org/W2125357166","https://openalex.org/W2140021378","https://openalex.org/W2148595118","https://openalex.org/W2158126684","https://openalex.org/W2162635569","https://openalex.org/W2166743230","https://openalex.org/W2229202815","https://openalex.org/W2401875268"],"related_works":["https://openalex.org/W2062195135","https://openalex.org/W2588198209","https://openalex.org/W1909006023","https://openalex.org/W4205824991","https://openalex.org/W3200723557","https://openalex.org/W4312713546","https://openalex.org/W2362195430","https://openalex.org/W2347494122","https://openalex.org/W2567983276","https://openalex.org/W2802298219"],"abstract_inverted_index":{"During":[0],"architectural":[1,11],"risk":[2],"analysis,":[3],"Security":[4],"Information":[5],"Workers":[6],"(SIWs)":[7],"reason":[8],"about":[9],"security-relevant":[10],"flaws":[12],"using":[13],"a":[14,30,42,61],"high-level":[15,43],"representation":[16,44],"of":[17,22],"the":[18,25,40],"system's":[19],"structure":[20],"instead":[21],"directly":[23,78],"reading":[24],"code":[26,31,41],"as":[27],"in":[28],"during":[29],"review.":[32],"It":[33],"is":[34,46],"still":[35],"hard":[36],"to":[37],"extract":[38,72],"from":[39],"that":[45,55,71,75],"sound,":[47],"conveys":[48],"design":[49],"intent,":[50],"and":[51],"enables":[52],"expressive":[53],"constraints":[54],"can":[56],"find":[57],"security":[58],"vulnerabilities.":[59],"As":[60],"result,":[62],"architecture-level":[63],"approaches":[64],"are":[65,76],"less":[66],"mature":[67],"than":[68],"code-level":[69],"ones":[70],"low-level":[73],"representations":[74],"not":[77],"intended":[79],"for":[80],"use":[81],"by":[82],"SIWs.":[83]},"counts_by_year":[{"year":2024,"cited_by_count":1},{"year":2018,"cited_by_count":1},{"year":2016,"cited_by_count":1},{"year":2015,"cited_by_count":1}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
