kirancodes.me
To Proof Maintenance & Beyond!

Schrödinger's security: opening the box on app developers' security rationale

Dirk van der Linden, Pauline Anthonysamy, Bashar Nuseibeh, Thein Than Tun, Marian Petre, Mark Levine, John N. Towse, Awais Rashid

Abstract

Research has established the wide variety of security failures in mobile apps, their consequences, and how app developers introduce or exacerbate them. What is not well known is why developers do so---what is the rationale underpinning the decisions they make which eventually strengthen or weaken app security? This is all the more complicated in modern app development's increasingly diverse demographic: growing numbers of independent, solo, or small team developers who do not have the organizational structures and support that larger software development houses enjoy.

BibTeX
@inproceedings{vanderLinden-al:ICSE20,
  author    = {Dirk van der Linden and
               Pauline Anthonysamy and
               Bashar Nuseibeh and
               Thein Than Tun and
               Marian Petre and
               Mark Levine and
               John N. Towse and
               Awais Rashid},
  title     = {Schr{\"{o}}dinger's security: opening the box on app developers' security rationale},
  booktitle = {ICSE},
  pages     = {149--160},
  publisher = {{ACM}},
  year      = {2020},
}

Related papers