Schrödinger's security: opening the box on app developers' security rationale
Abstract
Research has established the wide variety of security failures in mobile apps, their consequences, and how app developers introduce or exacerbate them. What is not well known is why developers do so---what is the rationale underpinning the decisions they make which eventually strengthen or weaken app security? This is all the more complicated in modern app development's increasingly diverse demographic: growing numbers of independent, solo, or small team developers who do not have the organizational structures and support that larger software development houses enjoy.
BibTeX
@inproceedings{vanderLinden-al:ICSE20,
author = {Dirk van der Linden and
Pauline Anthonysamy and
Bashar Nuseibeh and
Thein Than Tun and
Marian Petre and
Mark Levine and
John N. Towse and
Awais Rashid},
title = {Schr{\"{o}}dinger's security: opening the box on app developers' security rationale},
booktitle = {ICSE},
pages = {149--160},
publisher = {{ACM}},
year = {2020},
}