2020 IEEE 27th International Conference on Software Analysis, Evolution and Reengineering (SANER) 2020
DOI: 10.1109/saner48275.2020.9054799
|View full text |Cite
|
Sign up to set email alerts
|

CryptoExplorer: An Interactive Web Platform Supporting Secure Use of Cryptography APIs

Abstract: Research has shown that cryptographic APIs are hard to use. Consequently, developers resort to using code examples available in online information sources that are often not secure.We have developed a web platform, named CryptoExplorer, stocked with numerous real-world secure and insecure examples that developers can explore to learn how to use cryptographic APIs properly. This platform currently provides 3 263 secure uses, and 5 897 insecure uses of Java Cryptography Architecture mined from 2 324 Java project… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1

Citation Types

0
2
0

Year Published

2020
2020
2023
2023

Publication Types

Select...
3
1

Relationship

1
3

Authors

Journals

citations
Cited by 4 publications
(2 citation statements)
references
References 9 publications
0
2
0
Order By: Relevance
“…(5) Why do some developers perform be er in using cryptography? (6) What is the performance of the static analysis tool in detecting crypto misuses? (7) What is the benchmark result of comparing several static analysis tools in detecting crypto uses of the dataset's projects?…”
Section: E State Of Crypto Usesmentioning
confidence: 99%
See 1 more Smart Citation
“…(5) Why do some developers perform be er in using cryptography? (6) What is the performance of the static analysis tool in detecting crypto misuses? (7) What is the benchmark result of comparing several static analysis tools in detecting crypto uses of the dataset's projects?…”
Section: E State Of Crypto Usesmentioning
confidence: 99%
“…An experiment with 53 developers shows that API-integrated security hints help 73% of developers to write more secure code [4]. In the same vein, researchers have provided developers with an interactive web platform to access correct uses of crypto APIs [6].…”
Section: Introductionmentioning
confidence: 99%