{"id":"https://openalex.org/W3007797095","doi":"https://doi.org/10.1145/3377811.3380394","title":"Schr\u00f6dinger's security","display_name":"Schr\u00f6dinger's security","publication_year":2020,"publication_date":"2020-06-27","ids":{"openalex":"https://openalex.org/W3007797095","doi":"https://doi.org/10.1145/3377811.3380394","mag":"3007797095"},"language":"en","primary_location":{"id":"doi:10.1145/3377811.3380394","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3377811.3380394","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the ACM/IEEE 42nd International Conference on Software Engineering","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://research-information.bris.ac.uk/ws/files/220395791/PID6337357.pdf","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5082370417","display_name":"Dirk van der Linden","orcid":"https://orcid.org/0000-0002-8597-3156"},"institutions":[{"id":"https://openalex.org/I36234482","display_name":"University of Bristol","ror":"https://ror.org/0524sp257","country_code":"GB","type":"education","lineage":["https://openalex.org/I36234482"]}],"countries":["GB"],"is_corresponding":true,"raw_author_name":"Dirk van der Linden","raw_affiliation_strings":["University of Bristol"],"affiliations":[{"raw_affiliation_string":"University of Bristol","institution_ids":["https://openalex.org/I36234482"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5077892743","display_name":"Pauline Anthonysamy","orcid":null},"institutions":[{"id":"https://openalex.org/I1291425158","display_name":"Google (United States)","ror":"https://ror.org/00njsd438","country_code":"US","type":"company","lineage":["https://openalex.org/I1291425158","https://openalex.org/I4210128969"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Pauline Anthonysamy","raw_affiliation_strings":["Google"],"affiliations":[{"raw_affiliation_string":"Google","institution_ids":["https://openalex.org/I1291425158"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5060861082","display_name":"Bashar Nuseibeh","orcid":"https://orcid.org/0000-0002-3476-053X"},"institutions":[{"id":"https://openalex.org/I204136569","display_name":"The Open University","ror":"https://ror.org/05mzfcs16","country_code":"GB","type":"education","lineage":["https://openalex.org/I204136569"]},{"id":"https://openalex.org/I230495080","display_name":"University of Limerick","ror":"https://ror.org/00a0n9e72","country_code":"IE","type":"education","lineage":["https://openalex.org/I230495080"]}],"countries":["GB","IE"],"is_corresponding":false,"raw_author_name":"Bashar Nuseibeh","raw_affiliation_strings":["The Open University Lero and University of Limerick"],"affiliations":[{"raw_affiliation_string":"The Open University Lero and University of Limerick","institution_ids":["https://openalex.org/I230495080","https://openalex.org/I204136569"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5031843184","display_name":"Thein Than Tun","orcid":"https://orcid.org/0000-0002-2131-811X"},"institutions":[{"id":"https://openalex.org/I204136569","display_name":"The Open University","ror":"https://ror.org/05mzfcs16","country_code":"GB","type":"education","lineage":["https://openalex.org/I204136569"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Thein Than Tun","raw_affiliation_strings":["The Open University"],"affiliations":[{"raw_affiliation_string":"The Open University","institution_ids":["https://openalex.org/I204136569"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5002599291","display_name":"Marian Petre","orcid":"https://orcid.org/0000-0001-9052-3881"},"institutions":[{"id":"https://openalex.org/I204136569","display_name":"The Open University","ror":"https://ror.org/05mzfcs16","country_code":"GB","type":"education","lineage":["https://openalex.org/I204136569"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Marian Petre","raw_affiliation_strings":["The Open University"],"affiliations":[{"raw_affiliation_string":"The Open University","institution_ids":["https://openalex.org/I204136569"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5025533495","display_name":"Mark Levine","orcid":"https://orcid.org/0000-0001-5696-6021"},"institutions":[{"id":"https://openalex.org/I67415387","display_name":"Lancaster University","ror":"https://ror.org/04f2nsd36","country_code":"GB","type":"education","lineage":["https://openalex.org/I67415387"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Mark Levine","raw_affiliation_strings":["Lancaster University"],"affiliations":[{"raw_affiliation_string":"Lancaster University","institution_ids":["https://openalex.org/I67415387"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5004352015","display_name":"John N. Towse","orcid":"https://orcid.org/0000-0003-1183-5508"},"institutions":[{"id":"https://openalex.org/I67415387","display_name":"Lancaster University","ror":"https://ror.org/04f2nsd36","country_code":"GB","type":"education","lineage":["https://openalex.org/I67415387"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"John Towse","raw_affiliation_strings":["Lancaster University"],"affiliations":[{"raw_affiliation_string":"Lancaster University","institution_ids":["https://openalex.org/I67415387"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5034962802","display_name":"Awais Rashid","orcid":"https://orcid.org/0000-0002-0109-1341"},"institutions":[{"id":"https://openalex.org/I36234482","display_name":"University of Bristol","ror":"https://ror.org/0524sp257","country_code":"GB","type":"education","lineage":["https://openalex.org/I36234482"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Awais Rashid","raw_affiliation_strings":["University of Bristol"],"affiliations":[{"raw_affiliation_string":"University of Bristol","institution_ids":["https://openalex.org/I36234482"]}]}],"institutions":[],"countries_distinct_count":3,"institutions_distinct_count":8,"corresponding_author_ids":["https://openalex.org/A5082370417"],"corresponding_institution_ids":["https://openalex.org/I36234482"],"apc_list":null,"apc_paid":null,"fwci":3.4994,"has_fulltext":true,"cited_by_count":38,"citation_normalized_percentile":{"value":0.93412823,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":94,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"149","last_page":"160"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10743","display_name":"Software Testing and Debugging Techniques","score":0.9968000054359436,"subfield":{"id":"https://openalex.org/subfields/1712","display_name":"Software"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9954000115394592,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/underpinning","display_name":"Underpinning","score":0.7095178365707397},{"id":"https://openalex.org/keywords/variety","display_name":"Variety (cybernetics)","score":0.6749622821807861},{"id":"https://openalex.org/keywords/mobile-apps","display_name":"Mobile apps","score":0.5164342522621155},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.4963451027870178},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.48572736978530884},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.43028855323791504},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.3235892355442047},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.31302446126937866},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.27025842666625977}],"concepts":[{"id":"https://openalex.org/C2780871342","wikidata":"https://www.wikidata.org/wiki/Q7883752","display_name":"Underpinning","level":2,"score":0.7095178365707397},{"id":"https://openalex.org/C136197465","wikidata":"https://www.wikidata.org/wiki/Q1729295","display_name":"Variety (cybernetics)","level":2,"score":0.6749622821807861},{"id":"https://openalex.org/C2988145974","wikidata":"https://www.wikidata.org/wiki/Q620615","display_name":"Mobile apps","level":2,"score":0.5164342522621155},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.4963451027870178},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.48572736978530884},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.43028855323791504},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.3235892355442047},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.31302446126937866},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.27025842666625977},{"id":"https://openalex.org/C147176958","wikidata":"https://www.wikidata.org/wiki/Q77590","display_name":"Civil engineering","level":1,"score":0.0},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1145/3377811.3380394","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3377811.3380394","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the ACM/IEEE 42nd International Conference on Software Engineering","raw_type":"proceedings-article"},{"id":"pmh:oai:research-information.bris.ac.uk:publications/f43803de-4ade-488f-be1a-a2e8ba30c201","is_oa":true,"landing_page_url":"https://hdl.handle.net/1983/f43803de-4ade-488f-be1a-a2e8ba30c201","pdf_url":"https://research-information.bris.ac.uk/ws/files/220395791/PID6337357.pdf","source":{"id":"https://openalex.org/S4306400895","display_name":"Bristol Research (University of Bristol)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I36234482","host_organization_name":"University of Bristol","host_organization_lineage":["https://openalex.org/I36234482"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":""},{"id":"pmh:oai:research-information.bris.ac.uk:publications/f43803de-4ade-488f-be1a-a2e8ba30c201","is_oa":true,"landing_page_url":"https://research-information.bris.ac.uk/en/publications/f43803de-4ade-488f-be1a-a2e8ba30c201","pdf_url":"https://research-information.bris.ac.uk/ws/files/220395791/PID6337357.pdf","source":{"id":"https://openalex.org/S4306400895","display_name":"Bristol Research (University of Bristol)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I36234482","host_organization_name":"University of Bristol","host_organization_lineage":["https://openalex.org/I36234482"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Van Der Linden, D, Anthonysamy, P, Nuseibeh, B, Tun, T T, Petre, M, Levine, M, Towse, J N & Rashid, A 2020, Schr\u00f6dinger's Security : Opening the Box on App Developers' Security Rationale. in ICSE '20: Proceedings of the ACM/IEEE 42nd International Conference on Software Engineering. Institute of Electrical and Electronics Engineers (IEEE), pp. 149-160. https://doi.org/10.1145/3377811.3380394","raw_type":"contributionToPeriodical"}],"best_oa_location":{"id":"pmh:oai:research-information.bris.ac.uk:publications/f43803de-4ade-488f-be1a-a2e8ba30c201","is_oa":true,"landing_page_url":"https://hdl.handle.net/1983/f43803de-4ade-488f-be1a-a2e8ba30c201","pdf_url":"https://research-information.bris.ac.uk/ws/files/220395791/PID6337357.pdf","source":{"id":"https://openalex.org/S4306400895","display_name":"Bristol Research (University of Bristol)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I36234482","host_organization_name":"University of Bristol","host_organization_lineage":["https://openalex.org/I36234482"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":""},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G1406176795","display_name":"Why Johnny doesn't write secure software? Secure software development by the masses","funder_award_id":"EP/P011799/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"},{"id":"https://openalex.org/G3002506080","display_name":null,"funder_award_id":"3/RC/2094","funder_id":"https://openalex.org/F4320320847","funder_display_name":"Science Foundation Ireland"},{"id":"https://openalex.org/G303350058","display_name":null,"funder_award_id":"EP/P011799/2","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"},{"id":"https://openalex.org/G4631126029","display_name":null,"funder_award_id":"EP/R013144/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"},{"id":"https://openalex.org/G5207890969","display_name":null,"funder_award_id":"EP/P011799/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"},{"id":"https://openalex.org/G7089338179","display_name":null,"funder_award_id":"grant 13/RC/2094","funder_id":"https://openalex.org/F4320320847","funder_display_name":"Science Foundation Ireland"},{"id":"https://openalex.org/G7646705613","display_name":null,"funder_award_id":"13/RC/209","funder_id":"https://openalex.org/F4320320847","funder_display_name":"Science Foundation Ireland"},{"id":"https://openalex.org/G7736775806","display_name":null,"funder_award_id":"13/RC/2094","funder_id":"https://openalex.org/F4320320847","funder_display_name":"Science Foundation Ireland"},{"id":"https://openalex.org/G8719353587","display_name":null,"funder_award_id":"EP/P0","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"}],"funders":[{"id":"https://openalex.org/F4320320847","display_name":"Science Foundation Ireland","ror":"https://ror.org/0271asj38"},{"id":"https://openalex.org/F4320334627","display_name":"Engineering and Physical Sciences Research Council","ror":"https://ror.org/0439y7842"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W3007797095.pdf","grobid_xml":"https://content.openalex.org/works/W3007797095.grobid-xml"},"referenced_works_count":37,"referenced_works":["https://openalex.org/W81879861","https://openalex.org/W1499707862","https://openalex.org/W1524472272","https://openalex.org/W1588312980","https://openalex.org/W1607675442","https://openalex.org/W1985408088","https://openalex.org/W1996467017","https://openalex.org/W2014390890","https://openalex.org/W2055901972","https://openalex.org/W2093400716","https://openalex.org/W2102632372","https://openalex.org/W2103370348","https://openalex.org/W2162114525","https://openalex.org/W2164955012","https://openalex.org/W2396718181","https://openalex.org/W2478911292","https://openalex.org/W2510556079","https://openalex.org/W2511044583","https://openalex.org/W2529696250","https://openalex.org/W2532717356","https://openalex.org/W2535386169","https://openalex.org/W2698406033","https://openalex.org/W2759023773","https://openalex.org/W2766217896","https://openalex.org/W2794770543","https://openalex.org/W2802831671","https://openalex.org/W2886377000","https://openalex.org/W2888915331","https://openalex.org/W2889118403","https://openalex.org/W2889276558","https://openalex.org/W2941123418","https://openalex.org/W2964144088","https://openalex.org/W2981521383","https://openalex.org/W3100459919","https://openalex.org/W3105794999","https://openalex.org/W4299818415","https://openalex.org/W6814551917"],"related_works":["https://openalex.org/W623382837","https://openalex.org/W2155197844","https://openalex.org/W2349226017","https://openalex.org/W2349376052","https://openalex.org/W4388543378","https://openalex.org/W2093477105","https://openalex.org/W2375628069","https://openalex.org/W2358280189","https://openalex.org/W2369522881","https://openalex.org/W2808363712"],"abstract_inverted_index":{"Research":[0],"has":[1],"established":[2],"the":[3,33,36,50,73],"wide":[4],"variety":[5],"of":[6,62],"security":[7],"failures":[8],"in":[9,53],"mobile":[10],"apps,":[11],"their":[12],"consequences,":[13],"and":[14,76],"how":[15],"app":[16,45,55],"developers":[17,29,68],"introduce":[18],"or":[19,43,65],"exacerbate":[20],"them.":[21],"What":[22],"is":[23,27,32,48],"not":[24,71],"well":[25],"known":[26],"why":[28],"do":[30,70],"so---what":[31],"rationale":[34],"underpinning":[35],"decisions":[37],"they":[38],"make":[39],"which":[40],"eventually":[41],"strengthen":[42],"weaken":[44],"security?":[46],"This":[47],"all":[49],"more":[51],"complicated":[52],"modern":[54],"development's":[56],"increasingly":[57],"diverse":[58],"demographic:":[59],"growing":[60],"numbers":[61],"independent,":[63],"solo,":[64],"small":[66],"team":[67],"who":[69],"have":[72],"organizational":[74],"structures":[75],"support":[77],"that":[78],"larger":[79],"software":[80],"development":[81],"houses":[82],"enjoy.":[83]},"counts_by_year":[{"year":2025,"cited_by_count":6},{"year":2024,"cited_by_count":9},{"year":2023,"cited_by_count":8},{"year":2022,"cited_by_count":6},{"year":2021,"cited_by_count":7},{"year":2020,"cited_by_count":2}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2020-03-06T00:00:00"}
