{"id":"https://openalex.org/W4293280152","doi":"https://doi.org/10.1145/3546932.3546994","title":"A systematic mapping study of security concepts for configurable data storages","display_name":"A systematic mapping study of security concepts for configurable data storages","publication_year":2022,"publication_date":"2022-08-24","ids":{"openalex":"https://openalex.org/W4293280152","doi":"https://doi.org/10.1145/3546932.3546994"},"language":"en","primary_location":{"id":"doi:10.1145/3546932.3546994","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3546932.3546994","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 26th ACM International Systems and Software Product Line Conference - Volume A","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5042348675","display_name":"Richard May","orcid":"https://orcid.org/0000-0001-7186-404X"},"institutions":[{"id":"https://openalex.org/I94575722","display_name":"Harz University of Applied Sciences","ror":"https://ror.org/048yn7628","country_code":"DE","type":"education","lineage":["https://openalex.org/I94575722"]}],"countries":["DE"],"is_corresponding":true,"raw_author_name":"Richard May","raw_affiliation_strings":["Harz University Wernigerode, Germany"],"affiliations":[{"raw_affiliation_string":"Harz University Wernigerode, Germany","institution_ids":["https://openalex.org/I94575722"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5022024504","display_name":"Christian Biermann","orcid":"https://orcid.org/0009-0000-6001-2431"},"institutions":[{"id":"https://openalex.org/I94575722","display_name":"Harz University of Applied Sciences","ror":"https://ror.org/048yn7628","country_code":"DE","type":"education","lineage":["https://openalex.org/I94575722"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Christian Biermann","raw_affiliation_strings":["Harz University Wernigerode, Germany"],"affiliations":[{"raw_affiliation_string":"Harz University Wernigerode, Germany","institution_ids":["https://openalex.org/I94575722"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5042728295","display_name":"Jacob Kr\u00fcger","orcid":"https://orcid.org/0000-0002-0283-248X"},"institutions":[{"id":"https://openalex.org/I904495901","display_name":"Ruhr University Bochum","ror":"https://ror.org/04tsk2644","country_code":"DE","type":"education","lineage":["https://openalex.org/I904495901"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Jacob Kr\u00fcger","raw_affiliation_strings":["Ruhr-University Bochum, Germany"],"affiliations":[{"raw_affiliation_string":"Ruhr-University Bochum, Germany","institution_ids":["https://openalex.org/I904495901"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5042946019","display_name":"Gunter Saake","orcid":"https://orcid.org/0000-0001-9576-8474"},"institutions":[{"id":"https://openalex.org/I95793202","display_name":"Otto-von-Guericke University Magdeburg","ror":"https://ror.org/00ggpsq73","country_code":"DE","type":"education","lineage":["https://openalex.org/I95793202"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Gunter Saake","raw_affiliation_strings":["Otto-von-Guericke University, Magdeburg, Germany"],"affiliations":[{"raw_affiliation_string":"Otto-von-Guericke University, Magdeburg, Germany","institution_ids":["https://openalex.org/I95793202"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5086853013","display_name":"Thomas Leich","orcid":"https://orcid.org/0000-0001-9580-7728"},"institutions":[{"id":"https://openalex.org/I94575722","display_name":"Harz University of Applied Sciences","ror":"https://ror.org/048yn7628","country_code":"DE","type":"education","lineage":["https://openalex.org/I94575722"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Thomas Leich","raw_affiliation_strings":["Harz University Wernigerode, Germany"],"affiliations":[{"raw_affiliation_string":"Harz University Wernigerode, Germany","institution_ids":["https://openalex.org/I94575722"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5042348675"],"corresponding_institution_ids":["https://openalex.org/I94575722"],"apc_list":null,"apc_paid":null,"fwci":0.7437,"has_fulltext":false,"cited_by_count":5,"citation_normalized_percentile":{"value":0.68439238,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"108","last_page":"119"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9965999722480774,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9965999722480774,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10639","display_name":"Advanced Software Engineering Methodologies","score":0.9958999752998352,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12127","display_name":"Software System Performance and Reliability","score":0.995199978351593,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7509901523590088},{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.6483352184295654},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.5815091729164124},{"id":"https://openalex.org/keywords/context","display_name":"Context (archaeology)","score":0.5639007687568665},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5047541856765747},{"id":"https://openalex.org/keywords/data-science","display_name":"Data science","score":0.4965999722480774},{"id":"https://openalex.org/keywords/data-security","display_name":"Data security","score":0.4902496933937073},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.47143876552581787},{"id":"https://openalex.org/keywords/software-security-assurance","display_name":"Software security assurance","score":0.423235684633255},{"id":"https://openalex.org/keywords/data-integrity","display_name":"Data integrity","score":0.41793230175971985},{"id":"https://openalex.org/keywords/security-service","display_name":"Security service","score":0.2956736087799072},{"id":"https://openalex.org/keywords/information-security","display_name":"Information security","score":0.220860093832016}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7509901523590088},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.6483352184295654},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.5815091729164124},{"id":"https://openalex.org/C2779343474","wikidata":"https://www.wikidata.org/wiki/Q3109175","display_name":"Context (archaeology)","level":2,"score":0.5639007687568665},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5047541856765747},{"id":"https://openalex.org/C2522767166","wikidata":"https://www.wikidata.org/wiki/Q2374463","display_name":"Data science","level":1,"score":0.4965999722480774},{"id":"https://openalex.org/C10511746","wikidata":"https://www.wikidata.org/wiki/Q899388","display_name":"Data security","level":3,"score":0.4902496933937073},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.47143876552581787},{"id":"https://openalex.org/C62913178","wikidata":"https://www.wikidata.org/wiki/Q7554361","display_name":"Software security assurance","level":4,"score":0.423235684633255},{"id":"https://openalex.org/C33762810","wikidata":"https://www.wikidata.org/wiki/Q461671","display_name":"Data integrity","level":2,"score":0.41793230175971985},{"id":"https://openalex.org/C29983905","wikidata":"https://www.wikidata.org/wiki/Q7445066","display_name":"Security service","level":3,"score":0.2956736087799072},{"id":"https://openalex.org/C527648132","wikidata":"https://www.wikidata.org/wiki/Q189900","display_name":"Information security","level":2,"score":0.220860093832016},{"id":"https://openalex.org/C151730666","wikidata":"https://www.wikidata.org/wiki/Q7205","display_name":"Paleontology","level":1,"score":0.0},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3546932.3546994","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3546932.3546994","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 26th ACM International Systems and Software Product Line Conference - Volume A","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/17","score":0.44999998807907104,"display_name":"Partnerships for the goals"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":75,"referenced_works":["https://openalex.org/W1490902438","https://openalex.org/W1636389306","https://openalex.org/W1642179982","https://openalex.org/W1970420672","https://openalex.org/W1975675278","https://openalex.org/W1977941677","https://openalex.org/W1981611763","https://openalex.org/W1984125505","https://openalex.org/W1991841868","https://openalex.org/W1993460506","https://openalex.org/W1999296854","https://openalex.org/W1999643905","https://openalex.org/W1999798506","https://openalex.org/W2013116016","https://openalex.org/W2017094800","https://openalex.org/W2032990617","https://openalex.org/W2037826476","https://openalex.org/W2048064553","https://openalex.org/W2057084884","https://openalex.org/W2059164916","https://openalex.org/W2086148762","https://openalex.org/W2088063890","https://openalex.org/W2105357325","https://openalex.org/W2125398918","https://openalex.org/W2134444560","https://openalex.org/W2135296486","https://openalex.org/W2154158105","https://openalex.org/W2159915142","https://openalex.org/W2159951278","https://openalex.org/W2171272079","https://openalex.org/W2294161009","https://openalex.org/W2295582391","https://openalex.org/W2403780646","https://openalex.org/W2404856492","https://openalex.org/W2407618208","https://openalex.org/W2408576377","https://openalex.org/W2408623107","https://openalex.org/W2489643302","https://openalex.org/W2495617574","https://openalex.org/W2511525853","https://openalex.org/W2527243989","https://openalex.org/W2608136750","https://openalex.org/W2620284884","https://openalex.org/W2625392185","https://openalex.org/W2750406616","https://openalex.org/W2752205538","https://openalex.org/W2755647399","https://openalex.org/W2756040459","https://openalex.org/W2768840005","https://openalex.org/W2784160315","https://openalex.org/W2803544438","https://openalex.org/W2808595017","https://openalex.org/W2886209944","https://openalex.org/W2888840545","https://openalex.org/W2902054186","https://openalex.org/W2917783006","https://openalex.org/W2967363435","https://openalex.org/W2968076484","https://openalex.org/W2971334721","https://openalex.org/W2980821238","https://openalex.org/W2994840757","https://openalex.org/W3004779955","https://openalex.org/W3024191022","https://openalex.org/W3047727241","https://openalex.org/W3103458997","https://openalex.org/W3108926370","https://openalex.org/W3112496244","https://openalex.org/W3120787194","https://openalex.org/W3132009052","https://openalex.org/W3197375110","https://openalex.org/W4255262019","https://openalex.org/W4389277899","https://openalex.org/W6603123915","https://openalex.org/W6763493656","https://openalex.org/W6811313159"],"related_works":["https://openalex.org/W17155033","https://openalex.org/W2906845177","https://openalex.org/W4200107511","https://openalex.org/W2891427086","https://openalex.org/W1968625315","https://openalex.org/W2519603953","https://openalex.org/W4362497183","https://openalex.org/W2075298824","https://openalex.org/W4310934799","https://openalex.org/W2046589905"],"abstract_inverted_index":{"Most":[0],"modern":[1],"software":[2],"systems":[3],"can":[4,42],"be":[5,160],"configured":[6],"to":[7,24,30,159,203,208],"fulfill":[8],"specific":[9],"customer":[10],"requirements,":[11],"adapting":[12],"their":[13,180],"behavior":[14,63],"as":[15],"required.":[16],"However,":[17],"such":[18],"adaptations":[19],"also":[20],"increase":[21],"the":[22,58,61,82,108,118,132,152,210],"need":[23],"consider":[25],"security":[26,85,124,153,174,181],"concerns,":[27],"for":[28,170],"instance,":[29,171],"avoid":[31],"that":[32,39,151],"unintended":[33],"feature":[34],"interactions":[35],"cause":[36],"a":[37,97,167],"vulnerability":[38],"an":[40],"attacker":[41],"exploit.":[43],"A":[44],"particularly":[45],"interesting":[46],"aspect":[47],"in":[48,101,145,166],"this":[49,93],"context":[50],"are":[51,183,191],"data":[52,68,89,121,156,177],"storages":[53,157,178],"(e.g.,":[54],"databases)":[55],"used":[56],"within":[57],"system,":[59],"since":[60],"adapted":[62],"may":[64],"change":[65],"how":[66],"(critical)":[67],"is":[69,77,150,163],"collected,":[70],"stored,":[71],"processed,":[72],"and":[73,123,162,179,206,217],"accessed.":[74],"Unfortunately,":[75],"there":[76],"no":[78],"comprehensive":[79],"overview":[80],"of":[81,87,131,154],"state-of-the-art":[83,212],"on":[84,117],"concerns":[86,125,182],"configurable":[88,119,155,194],"storages.":[90],"To":[91],"address":[92],"gap,":[94],"we":[95,103,137,143],"conducted":[96],"systematic":[98],"mapping":[99,200],"study":[100,201],"which":[102,142],"analyzed":[104],"50":[105],"publications":[106,115],"from":[107],"last":[109],"decade":[110],"(2013--2022).":[111],"We":[112],"compare":[113],"these":[114],"based":[116],"systems,":[120],"storages,":[122],"involved;":[126],"using":[127],"established":[128],"classification":[129],"criteria":[130],"respective":[133],"research":[134,140],"fields.":[135],"Overall,":[136],"identified":[138],"14":[139],"opportunities,":[141],"discuss":[144],"detail.":[146],"Our":[147,199],"key":[148],"insight":[149],"seems":[158],"under-explored":[161],"rarely":[164],"considered":[165],"practice-oriented":[168],"way,":[169],"regarding":[172],"relevant":[173],"standards.":[175],"Furthermore,":[176],"usually":[184],"only":[185],"mentioned":[186],"briefly,":[187],"even":[188],"though":[189],"they":[190],"either":[192],"highly":[193],"or":[195],"store":[196],"critical":[197],"data.":[198],"aims":[202],"help":[204],"practitioners":[205],"researchers":[207],"understand":[209],"current":[211],"research,":[213],"identify":[214],"open":[215],"issues,":[216],"guide":[218],"future":[219],"research.":[220]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2024,"cited_by_count":4}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
