2019 IEEE/ACM 16th International Conference on Mining Software Repositories (MSR) 2019
DOI: 10.1109/msr.2019.00040
|View full text |Cite
|
Sign up to set email alerts
|

Snakes in Paradise?: Insecure Python-Related Coding Practices in Stack Overflow

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
2

Citation Types

0
12
0

Year Published

2019
2019
2023
2023

Publication Types

Select...
6
2

Relationship

1
7

Authors

Journals

citations
Cited by 21 publications
(12 citation statements)
references
References 11 publications
0
12
0
Order By: Relevance
“…Vast number of researches focused on security assessment in different programming languages [22], [2], [31], [21], [28]. Security assessment in languages like Java, C and C++ have established guidelines, standardizations and even recommendations [12], [26], [23].…”
Section: Related Workmentioning
confidence: 99%
See 1 more Smart Citation
“…Vast number of researches focused on security assessment in different programming languages [22], [2], [31], [21], [28]. Security assessment in languages like Java, C and C++ have established guidelines, standardizations and even recommendations [12], [26], [23].…”
Section: Related Workmentioning
confidence: 99%
“…Based on best of our knowledge, this is the first study on security of C# codes. several studies investigated security related issues in languages like Java and Python [22], [11], [5]. However, as mentioned no study has focused on security of C# codes and thus no study on C# code snippets in community question and answer websites exist.…”
Section: Related Workmentioning
confidence: 99%
“…Stack Overflow is regarded as the most popular question and answer website for software developers [15]. Software developers benefit from SO posts, while programming [8], [12], [18], [19], [20], and read about the technologies and tools needed for development [21], [22], [23]. Thus, research on Stack Overflow is of high importance in software community.…”
Section: Reusing Of Code Shared In Stack Overflowmentioning
confidence: 99%
“…Studies [8], [29] in java Script and android application, [7], [30], [35] in java and [23] in python showed the Stack Overflow have a security vulnerability in their code snippets that uses in applications, open source projects, and APIs.…”
Section: Security Of C++ Posts In Stack Overflowmentioning
confidence: 99%
“…Meng et al[Men18] studied bad coding practices related to the security of Java Spring Framework in Stack Overflow, and reported 9 out of 10 SSL/TLS-related posts to discuss insecure coding practices. Rahman et al[Rah19a] studied Python code blocks posted on Stack Overflow, and observed that 7.1% of the 44,966 Python-related answers to include at least one insecure coding practice. Fahl et al[Fah12] investigated inappropriate use of SSL/TLS protocols, such as, trusting all certificates and stripping SSL, for Android applications.…”
mentioning
confidence: 99%