{"id":"https://openalex.org/W2504360466","doi":"https://doi.org/10.1145/2851613.2851777","title":"Evaluating and comparing complexity, coupling and a new proposed set of coupling metrics in cross-project vulnerability prediction","display_name":"Evaluating and comparing complexity, coupling and a new proposed set of coupling metrics in cross-project vulnerability prediction","publication_year":2016,"publication_date":"2016-04-04","ids":{"openalex":"https://openalex.org/W2504360466","doi":"https://doi.org/10.1145/2851613.2851777","mag":"2504360466"},"language":"en","primary_location":{"id":"doi:10.1145/2851613.2851777","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2851613.2851777","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 31st Annual ACM Symposium on Applied Computing","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5037272618","display_name":"Sara Moshtari","orcid":"https://orcid.org/0000-0002-7918-0467"},"institutions":[{"id":"https://openalex.org/I166459259","display_name":"Shiraz University","ror":"https://ror.org/028qtbk54","country_code":"IR","type":"education","lineage":["https://openalex.org/I166459259"]}],"countries":["IR"],"is_corresponding":true,"raw_author_name":"Sara Moshtari","raw_affiliation_strings":["Shiraz University, Shiraz, Iran"],"affiliations":[{"raw_affiliation_string":"Shiraz University, Shiraz, Iran","institution_ids":["https://openalex.org/I166459259"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5056466838","display_name":"Ashkan Sami","orcid":"https://orcid.org/0000-0002-0023-9543"},"institutions":[{"id":"https://openalex.org/I166459259","display_name":"Shiraz University","ror":"https://ror.org/028qtbk54","country_code":"IR","type":"education","lineage":["https://openalex.org/I166459259"]}],"countries":["IR"],"is_corresponding":false,"raw_author_name":"Ashkan Sami","raw_affiliation_strings":["Shiraz University, Shiraz, Iran"],"affiliations":[{"raw_affiliation_string":"Shiraz University, Shiraz, Iran","institution_ids":["https://openalex.org/I166459259"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5037272618"],"corresponding_institution_ids":["https://openalex.org/I166459259"],"apc_list":null,"apc_paid":null,"fwci":7.9617,"has_fulltext":false,"cited_by_count":43,"citation_normalized_percentile":{"value":0.97308924,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"1415","last_page":"1421"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12423","display_name":"Software Reliability and Analysis Research","score":0.9987000226974487,"subfield":{"id":"https://openalex.org/subfields/1712","display_name":"Software"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10430","display_name":"Software Engineering Techniques and Practices","score":0.9873999953269958,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7713437676429749},{"id":"https://openalex.org/keywords/predictability","display_name":"Predictability","score":0.7500767707824707},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.6489079594612122},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.6042696237564087},{"id":"https://openalex.org/keywords/set","display_name":"Set (abstract data type)","score":0.58265221118927},{"id":"https://openalex.org/keywords/header","display_name":"Header","score":0.5625013113021851},{"id":"https://openalex.org/keywords/metric","display_name":"Metric (unit)","score":0.5448364019393921},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.5357056856155396},{"id":"https://openalex.org/keywords/software-metric","display_name":"Software metric","score":0.47205549478530884},{"id":"https://openalex.org/keywords/software-security-assurance","display_name":"Software security assurance","score":0.4629635810852051},{"id":"https://openalex.org/keywords/predictive-modelling","display_name":"Predictive modelling","score":0.4227296710014343},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.3341481685638428},{"id":"https://openalex.org/keywords/software-development","display_name":"Software development","score":0.2610626220703125},{"id":"https://openalex.org/keywords/software-quality","display_name":"Software quality","score":0.2221161127090454},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.18868502974510193},{"id":"https://openalex.org/keywords/information-security","display_name":"Information security","score":0.17624062299728394},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.11176848411560059},{"id":"https://openalex.org/keywords/statistics","display_name":"Statistics","score":0.10286617279052734},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.09303772449493408}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7713437676429749},{"id":"https://openalex.org/C197640229","wikidata":"https://www.wikidata.org/wiki/Q2534066","display_name":"Predictability","level":2,"score":0.7500767707824707},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.6489079594612122},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.6042696237564087},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.58265221118927},{"id":"https://openalex.org/C48105269","wikidata":"https://www.wikidata.org/wiki/Q1141160","display_name":"Header","level":2,"score":0.5625013113021851},{"id":"https://openalex.org/C176217482","wikidata":"https://www.wikidata.org/wiki/Q860554","display_name":"Metric (unit)","level":2,"score":0.5448364019393921},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.5357056856155396},{"id":"https://openalex.org/C82214349","wikidata":"https://www.wikidata.org/wiki/Q657339","display_name":"Software metric","level":5,"score":0.47205549478530884},{"id":"https://openalex.org/C62913178","wikidata":"https://www.wikidata.org/wiki/Q7554361","display_name":"Software security assurance","level":4,"score":0.4629635810852051},{"id":"https://openalex.org/C45804977","wikidata":"https://www.wikidata.org/wiki/Q7239673","display_name":"Predictive modelling","level":2,"score":0.4227296710014343},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3341481685638428},{"id":"https://openalex.org/C529173508","wikidata":"https://www.wikidata.org/wiki/Q638608","display_name":"Software development","level":3,"score":0.2610626220703125},{"id":"https://openalex.org/C117447612","wikidata":"https://www.wikidata.org/wiki/Q1412670","display_name":"Software quality","level":4,"score":0.2221161127090454},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.18868502974510193},{"id":"https://openalex.org/C527648132","wikidata":"https://www.wikidata.org/wiki/Q189900","display_name":"Information security","level":2,"score":0.17624062299728394},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.11176848411560059},{"id":"https://openalex.org/C105795698","wikidata":"https://www.wikidata.org/wiki/Q12483","display_name":"Statistics","level":1,"score":0.10286617279052734},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.09303772449493408},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.0},{"id":"https://openalex.org/C29983905","wikidata":"https://www.wikidata.org/wiki/Q7445066","display_name":"Security service","level":3,"score":0.0},{"id":"https://openalex.org/C21547014","wikidata":"https://www.wikidata.org/wiki/Q1423657","display_name":"Operations management","level":1,"score":0.0},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/2851613.2851777","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2851613.2851777","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 31st Annual ACM Symposium on Applied Computing","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/8","display_name":"Decent work and economic growth","score":0.4699999988079071}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":44,"referenced_works":["https://openalex.org/W23149702","https://openalex.org/W145304327","https://openalex.org/W207271934","https://openalex.org/W632374264","https://openalex.org/W1501506223","https://openalex.org/W1562658564","https://openalex.org/W1936022305","https://openalex.org/W1964062576","https://openalex.org/W1964962870","https://openalex.org/W1966682079","https://openalex.org/W1968572451","https://openalex.org/W1997236144","https://openalex.org/W2003529494","https://openalex.org/W2004627797","https://openalex.org/W2004758929","https://openalex.org/W2015004885","https://openalex.org/W2015729052","https://openalex.org/W2022695357","https://openalex.org/W2043837581","https://openalex.org/W2045071758","https://openalex.org/W2063770056","https://openalex.org/W2069205948","https://openalex.org/W2079753286","https://openalex.org/W2101227285","https://openalex.org/W2105300539","https://openalex.org/W2107024044","https://openalex.org/W2112770261","https://openalex.org/W2121866145","https://openalex.org/W2135250985","https://openalex.org/W2137789775","https://openalex.org/W2139085711","https://openalex.org/W2140190241","https://openalex.org/W2158864412","https://openalex.org/W2160958420","https://openalex.org/W2161769853","https://openalex.org/W2164818334","https://openalex.org/W2166336492","https://openalex.org/W2244669237","https://openalex.org/W2290181636","https://openalex.org/W2462947182","https://openalex.org/W2790647267","https://openalex.org/W2966207845","https://openalex.org/W4231859022","https://openalex.org/W4244639453"],"related_works":["https://openalex.org/W2726467123","https://openalex.org/W2064726690","https://openalex.org/W4252678288","https://openalex.org/W4254065731","https://openalex.org/W2171597999","https://openalex.org/W1607297154","https://openalex.org/W4210820789","https://openalex.org/W3157583598","https://openalex.org/W2807350197","https://openalex.org/W2519454625"],"abstract_inverted_index":{"Software":[0,40],"security":[1,37],"is":[2,16],"an":[3],"important":[4],"concern":[5],"in":[6,87,112],"the":[7,78,97,160,175,183,192],"world":[8],"moving":[9],"towards":[10],"Information":[11],"Technology.":[12],"Detecting":[13],"software":[14],"vulnerabilities":[15,111,163],"a":[17,61,133],"difficult":[18],"and":[19,35,44,66,107,190],"resource":[20],"consuming":[21],"task.":[22],"Therefore,":[23],"automatic":[24],"vulnerability":[25,89,93,125,199],"prediction":[26,94,98],"would":[27],"help":[28],"development":[29],"teams":[30],"to":[31,52,69,109,174,188],"predict":[32,53,70,162],"vulnerability-prone":[33,54],"components":[34],"prioritize":[36],"inspection":[38],"efforts.":[39],"source":[41],"code":[42],"metrics":[43,68,86,122,138,173,179,196],"data":[45],"mining":[46],"techniques":[47],"have":[48],"been":[49],"recently":[50],"used":[51,60],"components.":[55],"Some":[56],"of":[57,63,81,85,103,136,154,159,177,182,195],"previous":[58],"studies":[59],"set":[62,135,176,194],"unit":[64,120],"complexity":[65,121,178],"coupling":[67,128,137,149,168],"vulnerabilities.":[71],"In":[72,91],"this":[73],"study,":[74],"first,":[75],"we":[76,95,131],"compare":[77],"predictability":[79],"power":[80],"these":[82],"two":[83],"groups":[84],"cross-project":[88,92,198],"prediction.":[90,200],"create":[96],"model":[99],"based":[100],"on":[101],"datasets":[102],"completely":[104],"different":[105],"projects":[106],"try":[108],"detect":[110],"another":[113],"project.":[114],"The":[115],"experimental":[116],"results":[117],"show":[118],"that":[119],"are":[123,140],"stronger":[124],"predictors":[126],"than":[127,166],"metrics.":[129,146,169],"Then,":[130],"propose":[132],"new":[134,148],"which":[139,151],"called":[141],"Included":[142],"Vulnerable":[143],"Header":[144],"(IVH)":[145],"These":[147],"metrics,":[150],"consider":[152],"interaction":[153],"application":[155],"modules":[156],"with":[157],"outside":[158],"application,":[161],"highly":[164],"better":[165],"regular":[167],"Furthermore,":[170],"adding":[171],"IVH":[172],"improves":[180],"Recall":[181],"best":[184,193],"predictor":[185],"from":[186],"60.9%":[187],"87.4%":[189],"shows":[191],"for":[197]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":3},{"year":2023,"cited_by_count":7},{"year":2022,"cited_by_count":3},{"year":2021,"cited_by_count":7},{"year":2020,"cited_by_count":8},{"year":2019,"cited_by_count":5},{"year":2018,"cited_by_count":6},{"year":2017,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
